NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63810  CVE-2006-5204  Cross-site scripting (XSS) vulnerability in action_admin/member.php in Invision Power Board (IPB) 2.1.7 and earlier allows remote authenticated users to inject arbitrary web script or HTML via a reference to a script in the avatar setting, which can be leveraged for a cross-site request forgery (CSRF) attack involving forced SQL execution by an admin.    2.1  Low  2016-12-20  2011-03-07  View
66371  CVE-2005-0620  Einstein 1.0 stores credit card information in plaintext in the world-readable wallets.dat file, which allows local users to steal the information.    2.1  Low  2017-01-03  2008-09-05  View
72771  CVE-2004-2394  Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of the search space required for brute force attacks.    2.1  Low  2017-07-18  2017-07-10  View
73283  CVE-2003-0136  psbanner in the LPRng package allows local users to overwrite arbitrary files via a symbolic link attack on the /tmp/before file.    2.1  Low  2017-01-03  2008-09-10  View
76099  CVE-1999-1449  SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.    2.1  Low  2017-01-05  2008-09-05  View

Page 15562 of 17672, showing 5 records out of 88360 total, starting on record 77806, ending on 77810

Actions