NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68572 | CVE-2005-2897 | WEB//NEWS 1.4 allows remote attackers to obtain sensitive information via a direct request to files in the actions directory, which reveal the path in an error message, as demonstrated using cat.add.php. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 3292 | CVE-2008-3411 | The Axesstel AXW-D800 modem with D2_ETH_109_01_VEBR Jun-14-2006 software does not require authentication for (1) etc/config/System.html, (2) etc/config/Network.html, (3) etc/config/Security.html, (4) cgi-bin/sysconf.cgi, and (5) cgi-bin/route.cgi, which allows remote attackers to change the modem"s configuration via direct requests. | 2 | 10 | High | 2017-01-03 | 2009-01-29 | View | |
| 68828 | CVE-2005-3166 | Unspecified vulnerability in "edit submission handling" for MediaWiki 1.4.x before 1.4.10 and 1.3.x before 1.3.16 allows remote attackers to cause a denial of service (corruption of the previous submission) via a crafted URL. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 3548 | CVE-2008-3681 | components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows remote attackers to reset the "first enabled user (lowest id)" password, typically for the administrator. | 2 | 7.5 | High | 2017-01-03 | 2009-02-06 | View | |
| 69084 | CVE-2005-3423 | Multiple SQL injection vulnerabilities in Subdreamer 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the loginusername parameter or (2) cookies to (a) subdreamer.php, (b) ipb2.php, (c) phpbb2.php, (d) vbulletin2.php, and (e) vbulletin3.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 14878 of 17672, showing 5 records out of 88360 total, starting on record 74386, ending on 74390