NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63821  CVE-2006-5215  The Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060317, and Solaris 8 through 10 before 20061006, allows local users to overwrite arbitrary files, or read another user"s Xsession errors file, via a symlink attack on a /tmp/xses-$USER file.    2.6  Low  2016-12-20  2008-09-05  View
64845  CVE-2006-6284  Directory traversal vulnerability in admin.php in Vikingboard 0.1.2 allows remote authenticated administrators to include arbitrary files via a .. (dot dot) sequence in the act parameter.    High  2016-12-20  2008-09-05  View
590  CVE-2008-0615  Directory traversal vulnerability in wp-admin/admin.php in the DMSGuestbook 1.8.0 and 1.7.0 plugin for WordPress allows remote authenticated users to read arbitrary files via a .. (dot dot) in the (1) folder and (2) file parameters.    Medium  2017-01-03  2008-09-05  View
66894  CVE-2005-1145  ** DISPUTED ** NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in calendar.pl in CalendarScript 3.20 allows remote attackers to inject arbitrary web script or HTML via the template parameter, a different vulnerability than CVE-2005-1146.    4.3  Medium  2017-01-03  2008-09-05  View
67918  CVE-2005-2216  PHP remote file inclusion vulnerability in gals.php in PhotoGal Photo Gallery 1.5 and earlier allows remote attackers to execute arbitrary code via the news_file parameter.    7.5  High  2017-01-03  2008-09-05  View

Page 16469 of 17672, showing 5 records out of 88360 total, starting on record 82341, ending on 82345

Actions