NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71951 | CVE-2004-1572 | AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, which allows remote attackers to list files in those directories via a direct HTTP request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6671 | CVE-2008-6940 | TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain a database backup via a direct request to admin/backup/db. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
72207 | CVE-2004-1829 | Multiple cross-site scripting (XSS) vulnerabilities in error.php in Gijza.net Error Manager 2.1 for PHP-Nuke 6.0 allow remote attackers to inject arbitrary web script or HTML via the (1) pagetitle or (2) error parameters, or (3) certain parameters in the error log. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
6927 | CVE-2008-7196 | Unspecified vulnerability in metashell before 0.03 has unknown impact and attack vectors related to a "PATH execution security flaw," possibly an untrusted search path vulnerability. | 2 | 10 | High | 2017-01-03 | 2009-09-10 | View | |
72463 | CVE-2004-2086 | Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP POST request with a long query parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1030 of 17672, showing 5 records out of 88360 total, starting on record 5146, ending on 5150