NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49056 | CVE-2009-1787 | Multiple SQL injection vulnerabilities in PHP Dir Submit (aka WebsiteSubmitter and Submitter Script) allow remote attackers to bypass authentication and gain administrative access via the (1) username and (2) password parameters. | 2 | 7.5 | High | 2017-01-07 | 2009-06-09 | View | |
| 49568 | CVE-2009-2320 | The web interface on the Axesstel MV 410R relies on client-side JavaScript code to validate input, which allows remote attackers to send crafted data, and possibly have unspecified other impact, via a client that does not process JavaScript. | 2 | 7.5 | High | 2017-01-07 | 2009-07-07 | View | |
| 52128 | CVE-2009-5014 | The default quickstart configuration of TurboGears2 (aka tg2) before 2.0.2 has a weak cookie salt, which makes it easier for remote attackers to bypass repoze.who authentication via a forged authorization cookie, a related issue to CVE-2010-3852. | 2 | 7.5 | High | 2017-01-07 | 2010-11-09 | View | |
| 52384 | CVE-2007-0152 | OhhASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db/OhhASP.mdb. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 53664 | CVE-2007-1480 | Creative Guestbook 1.0 allows remote attackers to add an administrative account via a direct request to createadmin.php with Name, Email, and PASSWORD parameters set. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View |
Page 14622 of 17672, showing 5 records out of 88360 total, starting on record 73106, ending on 73110