NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 57148 | CVE-2007-5060 | Cross-site request forgery (CSRF) vulnerability in the cpass functionality in an admin action in index.php in XCMS allows remote attackers to change arbitrary passwords via certain password_ and rpassword_ parameters, possibly related to timestamp values. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 57660 | CVE-2007-5595 | CRLF injection vulnerability in the drupal_goto function in includes/common.inc Drupal 4.7.x before 4.7.8 and 5.x before 5.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors. | 2 | 5.1 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 59196 | CVE-2006-0458 | The DCC ACCEPT command handler in irssi before 0.8.9+0.8.10rc5-0ubuntu4.1 in Ubuntu Linux, and possibly other distributions, allows remote attackers to cause a denial of service (application crash) via certain crafted arguments in a DCC command. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 59708 | CVE-2006-0985 | Multiple cross-site scripting (XSS) vulnerabilities in the "post comment" functionality of WordPress 2.0.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) website, and (3) comment parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 60220 | CVE-2006-1511 | Buffer overflow in the ILASM assembler in the Microsoft .NET 1.0 and 1.1 Framework might allow user-assisted attackers to execute arbitrary code via a .il file that calls a function with a long name. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 2193 of 17672, showing 5 records out of 88360 total, starting on record 10961, ending on 10965