NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80676 | CVE-2002-1725 | phpimageview.php in PHPImageView 1.0 allows remote attackers to obtain sensitive information via the pw=show option, which invokes the phpinfo function. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
80677 | CVE-2002-1726 | secure_inc.php in PhotoDB 1.4 allows remote attackers to bypass authentication via a URL with a large Time parameter, non-empty rmtusername and rmtpassword parameter, and an accesslevel parameter that is lower than the access level of the requested page. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
80678 | CVE-2002-1727 | Cross-site scripting vulnerability (XSS) in (1) as_web.exe and (2) as_web4.exe in askSam Web Publisher 1 and 4 allows remote attackers to execute arbitrary script as other users via a URL. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
80679 | CVE-2002-1728 | askSam Web Publisher 1.0 and 4.0 allows remote attackers to determine the full path to the web root directory via a request for a file that does not exist, which generates an error message that reveals the full path. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
80680 | CVE-2002-1729 | Cross-site scripting vulnerability (XSS) in ASPjar Guestbook 1.00 allows remote attackers to execute arbitrary script as other users via the web site parameter in a guestbook message. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1202 of 17672, showing 5 records out of 88360 total, starting on record 6006, ending on 6010