CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36836  CVE-2008-6719  Candidate  U&M Software Event Lister (aka JustListIt) 1.0 does not require administrative authentication for all scripts in the admin/ directory, which allows remote attackers to have an unspecified impact via a direct request to (1) start.php, (2) aktivitet.php, (3) prop_aktivitet.php, (4) kategorier.php, (5) konfig.php, (6) security.php, (7) manual.php, and possibly (8) index.php.  Assigned (20090413)  None (candidate not yet proposed)    View
36835  CVE-2008-6718  Candidate  U&M Software JustBookIt 1.0 does not require administrative authentication for all scripts in the admin/ directory, which allows remote attackers to have an unspecified impact via a direct request to (1) user_manual.php, (2) user_config.php, (3) user_kundnamn.php, (4) user_kundlista.php, (5) user_aktiva_kunder.php, (6) database.php, and possibly (7) index.php.  Assigned (20090413)  None (candidate not yet proposed)    View
36834  CVE-2008-6717  Candidate  U&M Software Signup 1.0 and 1.1 does not require administrative authentication for all scripts in the admin/ directory, which allows remote attackers to have an unspecified impact via a direct request to (1) adminstart.php, (2) admineventtype.php, (3) admineventdetails.php, (4) admineventlist.php, (5) adminuserslist.php, (6) adminleaderslist.php, (7) admindatabase.php, and possibly (8) index.php.  Assigned (20090413)  None (candidate not yet proposed)    View
17041  CVE-2006-0937  Candidate  U.N.U. Mailgust 1.9 allows remote attackers to obtain sensitive information via a direct request to index.php with method=showfullcsv, which reveals the POP3 server configuration, including account name and password.  Assigned (20060228)  None (candidate not yet proposed)    View
53482  CVE-2012-0239  Candidate  uaddUpAdmin.asp in Advantech/BroadWin WebAccess before 7.0 does not properly perform authentication, which allows remote attackers to modify an administrative password via a password-change request.  Assigned (20111221)  None (candidate not yet proposed)    View

Page 18599 of 20943, showing 5 records out of 104715 total, starting on record 92991, ending on 92995

Actions