NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6681  CVE-2008-6950  Multiple SQL injection vulnerabilities in login.asp in Bankoi WebHosting Control Panel 1.20 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password field.    7.5  High  2017-01-03  2009-08-12  View
6685  CVE-2008-6954  The web interface (CobblerWeb) in Cobbler before 1.2.9 allows remote authenticated users to execute arbitrary Python code in cobblerd by editing a Cheetah kickstart template to import arbitrary Python modules.    High  2017-01-03  2009-08-12  View
6686  CVE-2008-6955  mxCamArchive 2.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain configuration details and passwords via a direct request for archive/config.ini.    7.5  High  2017-01-03  2009-08-12  View
4896  CVE-2008-5112  The LDAP server in Active Directory in Microsoft Windows 2000 SP4 and Server 2003 SP1 and SP2 responds differently to a failed bind attempt depending on whether the user account exists and is permitted to login, which allows remote attackers to enumerate valid usernames via a series of LDAP bind requests, as demonstrated by ldapuserenum.    Medium  2017-01-03  2009-08-12  View
49705  CVE-2009-2460  Multiple stack-based buffer overflows in mathtex.cgi in mathTeX, when downloaded before 20090713, have unspecified impact and remote attack vectors.    10  High  2017-01-07  2009-08-12  View

Page 14381 of 17672, showing 5 records out of 88360 total, starting on record 71901, ending on 71905

Actions