NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57148  CVE-2007-5060  Cross-site request forgery (CSRF) vulnerability in the cpass functionality in an admin action in index.php in XCMS allows remote attackers to change arbitrary passwords via certain password_ and rpassword_ parameters, possibly related to timestamp values.    4.3  Medium  2017-01-07  2008-09-05  View
57660  CVE-2007-5595  CRLF injection vulnerability in the drupal_goto function in includes/common.inc Drupal 4.7.x before 4.7.8 and 5.x before 5.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.    5.1  Medium  2017-01-07  2011-03-07  View
59196  CVE-2006-0458  The DCC ACCEPT command handler in irssi before 0.8.9+0.8.10rc5-0ubuntu4.1 in Ubuntu Linux, and possibly other distributions, allows remote attackers to cause a denial of service (application crash) via certain crafted arguments in a DCC command.    Medium  2016-12-20  2008-09-05  View
59708  CVE-2006-0985  Multiple cross-site scripting (XSS) vulnerabilities in the "post comment" functionality of WordPress 2.0.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) website, and (3) comment parameters.    4.3  Medium  2016-12-20  2011-03-07  View
60220  CVE-2006-1511  Buffer overflow in the ILASM assembler in the Microsoft .NET 1.0 and 1.1 Framework might allow user-assisted attackers to execute arbitrary code via a .il file that calls a function with a long name.    5.1  Medium  2016-12-20  2011-03-07  View

Page 2193 of 17672, showing 5 records out of 88360 total, starting on record 10961, ending on 10965

Actions