NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49056  CVE-2009-1787  Multiple SQL injection vulnerabilities in PHP Dir Submit (aka WebsiteSubmitter and Submitter Script) allow remote attackers to bypass authentication and gain administrative access via the (1) username and (2) password parameters.    7.5  High  2017-01-07  2009-06-09  View
49568  CVE-2009-2320  The web interface on the Axesstel MV 410R relies on client-side JavaScript code to validate input, which allows remote attackers to send crafted data, and possibly have unspecified other impact, via a client that does not process JavaScript.    7.5  High  2017-01-07  2009-07-07  View
52128  CVE-2009-5014  The default quickstart configuration of TurboGears2 (aka tg2) before 2.0.2 has a weak cookie salt, which makes it easier for remote attackers to bypass repoze.who authentication via a forged authorization cookie, a related issue to CVE-2010-3852.    7.5  High  2017-01-07  2010-11-09  View
52384  CVE-2007-0152  OhhASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db/OhhASP.mdb.    7.5  High  2017-01-07  2008-11-15  View
53664  CVE-2007-1480  Creative Guestbook 1.0 allows remote attackers to add an administrative account via a direct request to createadmin.php with Name, Email, and PASSWORD parameters set.    7.5  High  2017-01-07  2008-11-13  View

Page 14622 of 17672, showing 5 records out of 88360 total, starting on record 73106, ending on 73110

Actions