NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65266 | CVE-2006-6722 | Bandwebsite (aka Bandsite portal system) 1.5 allows remote attackers to create administrative accounts via a direct request to admin.php with the Login parameter set to 1. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65522 | CVE-2006-6979 | The ruby handlers in the Magnatune component in Amarok do not properly quote text in certain contexts, probably including construction of an unzip command line, which allows attackers to execute arbitrary commands via shell metacharacters. | 2 | 7.5 | High | 2016-12-20 | 2011-06-16 | View | |
65779 | CVE-2006-7236 | The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assisted attackers to execute arbitrary code or have unspecified other impact via escape sequences. | 2 | 9.3 | High | 2016-12-20 | 2009-02-26 | View | |
499 | CVE-2008-0524 | Cross-site request forgery (CSRF) vulnerability in the management interface in multiple Yamaha RT series routers allows remote attackers to change password settings and probably other configuration settings as administrators via unspecified vectors. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
66035 | CVE-2005-0272 | ReviewPost PHP Pro before 2.84 allows remote attackers to upload and execute arbitrary PHP files by posting a review file with multiple extensions, which bypasses the intended restrictions. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16974 of 17672, showing 5 records out of 88360 total, starting on record 84866, ending on 84870