NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70352 | CVE-2005-4763 | BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP6 and earlier, and 6.1 SP7 and earlier, when Internet Inter-ORB Protocol (IIOP) is used, sometimes include a password in an exception message that is sent to a client or stored in a log file, which might allow remote attackers to perform unauthorized actions. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 5072 | CVE-2008-5294 | SQL injection vulnerability in index.php in WebStudio eCatalogue allows remote attackers to execute arbitrary SQL commands via the pageid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
| 5328 | CVE-2008-5579 | Absolute path traversal vulnerability in mini-pub.php/front-end/cat.php in mini-pub 0.3 allows remote attackers to read arbitrary files via a full pathname in the sFileName parameter. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 70864 | CVE-2004-0417 | Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
| 5584 | CVE-2008-5853 | Chilek Content Management System (aka ChiCoMaS) 2.0.4 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to (1) obtain database credentials via a direct request for config.inc or (2) read database backups via a request for a backup/ URI. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 14770 of 17672, showing 5 records out of 88360 total, starting on record 73846, ending on 73850