NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63554  CVE-2006-4946  PHP remote file inclusion vulnerability in include/startup.inc.php in CMSDevelopment Business Card Web Builder (BCWB) 0.99, and possibly 2.5 Beta and earlier, allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.    5.1  Medium  2016-12-20  2011-03-07  View
64578  CVE-2006-6017  WordPress before 2.0.5 does not properly store a profile containing a string representation of a serialized object, which allows remote authenticated users to cause a denial of service (application crash) via a string that represents a (1) malformed or (2) large serialized object, because the object triggers automatic unserialization for display.    Medium  2016-12-20  2008-09-05  View
65603  CVE-2006-7060  cindex.php in Scriptsez.net E-Dating System allows remote attackers to obtain the full path via an invalid id parameter in a dologin action, which leaks the path in an error message.    Medium  2016-12-20  2008-09-05  View
65859  CVE-2005-0079  Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.    4.6  Medium  2017-07-18  2017-07-10  View
579  CVE-2008-0604  The LDAP authentication feature in XLight FTP Server before 2.83, when used with some unspecified LDAP servers, does not check for blank passwords, which allows remote attackers to bypass intended access restrictions.    6.8  Medium  2017-01-03  2008-09-05  View

Page 2411 of 17672, showing 5 records out of 88360 total, starting on record 12051, ending on 12055

Actions