NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71951  CVE-2004-1572  AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, which allows remote attackers to list files in those directories via a direct HTTP request.    Medium  2017-07-18  2017-07-10  View
6671  CVE-2008-6940  TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain a database backup via a direct request to admin/backup/db.    7.5  High  2017-01-03  2009-08-12  View
72207  CVE-2004-1829  Multiple cross-site scripting (XSS) vulnerabilities in error.php in Gijza.net Error Manager 2.1 for PHP-Nuke 6.0 allow remote attackers to inject arbitrary web script or HTML via the (1) pagetitle or (2) error parameters, or (3) certain parameters in the error log.    4.3  Medium  2017-07-18  2017-07-10  View
6927  CVE-2008-7196  Unspecified vulnerability in metashell before 0.03 has unknown impact and attack vectors related to a "PATH execution security flaw," possibly an untrusted search path vulnerability.    10  High  2017-01-03  2009-09-10  View
72463  CVE-2004-2086  Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP POST request with a long query parameter.    Medium  2017-07-18  2017-07-10  View

Page 1030 of 17672, showing 5 records out of 88360 total, starting on record 5146, ending on 5150

Actions