NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57953 | CVE-2007-5928 | OpenBase 10.0.5 and earlier allows remote authenticated users to trigger a free of an arbitrary memory location via long strings in a SELECT statement. NOTE: this might be a buffer overflow, but it is not clear. | 2 | 9 | High | 2017-01-07 | 2008-09-05 | View | |
58465 | CVE-2007-6470 | phpRPG 0.8 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read session ID values in files under tmp/, and then hijack sessions via PHPSESSID cookies. | 2 | 6.4 | Medium | 2017-01-07 | 2008-09-05 | View | |
59233 | CVE-2006-0495 | Cross-site scripting (XSS) vulnerability in the Add Thread to Favorites feature in usercp2.php in MyBB (aka MyBulletinBoard) 1.02 allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer header ($url variable). | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
61025 | CVE-2006-2323 | Multiple PHP remote file inclusion vulnerabilities in SmartISoft phpListPro 2.01 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the returnpath parameter in (1) editsite.php, (2) addsite.php, and (3) in.php. NOTE: The config.php vector is already covered by CVE-2006-1749. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
62817 | CVE-2006-4172 | Integer overflow vulnerability in the i386_set_ldt call in FreeBSD 5.5, and possibly earlier versions down to 5.2, allows local users to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2006-4178. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View |
Page 621 of 17672, showing 5 records out of 88360 total, starting on record 3101, ending on 3105