NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63554 | CVE-2006-4946 | PHP remote file inclusion vulnerability in include/startup.inc.php in CMSDevelopment Business Card Web Builder (BCWB) 0.99, and possibly 2.5 Beta and earlier, allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64578 | CVE-2006-6017 | WordPress before 2.0.5 does not properly store a profile containing a string representation of a serialized object, which allows remote authenticated users to cause a denial of service (application crash) via a string that represents a (1) malformed or (2) large serialized object, because the object triggers automatic unserialization for display. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 65603 | CVE-2006-7060 | cindex.php in Scriptsez.net E-Dating System allows remote attackers to obtain the full path via an invalid id parameter in a dologin action, which leaks the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 65859 | CVE-2005-0079 | Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 579 | CVE-2008-0604 | The LDAP authentication feature in XLight FTP Server before 2.83, when used with some unspecified LDAP servers, does not check for blank passwords, which allows remote attackers to bypass intended access restrictions. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 2411 of 17672, showing 5 records out of 88360 total, starting on record 12051, ending on 12055