NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63821 | CVE-2006-5215 | The Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060317, and Solaris 8 through 10 before 20061006, allows local users to overwrite arbitrary files, or read another user"s Xsession errors file, via a symlink attack on a /tmp/xses-$USER file. | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
64845 | CVE-2006-6284 | Directory traversal vulnerability in admin.php in Vikingboard 0.1.2 allows remote authenticated administrators to include arbitrary files via a .. (dot dot) sequence in the act parameter. | 2 | 9 | High | 2016-12-20 | 2008-09-05 | View | |
590 | CVE-2008-0615 | Directory traversal vulnerability in wp-admin/admin.php in the DMSGuestbook 1.8.0 and 1.7.0 plugin for WordPress allows remote authenticated users to read arbitrary files via a .. (dot dot) in the (1) folder and (2) file parameters. | 2 | 4 | Medium | 2017-01-03 | 2008-09-05 | View | |
66894 | CVE-2005-1145 | ** DISPUTED ** NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in calendar.pl in CalendarScript 3.20 allows remote attackers to inject arbitrary web script or HTML via the template parameter, a different vulnerability than CVE-2005-1146. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
67918 | CVE-2005-2216 | PHP remote file inclusion vulnerability in gals.php in PhotoGal Photo Gallery 1.5 and earlier allows remote attackers to execute arbitrary code via the news_file parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 16469 of 17672, showing 5 records out of 88360 total, starting on record 82341, ending on 82345