NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6330  CVE-2008-6599  cookiecheck.php in CookieCheck 1.0 stores tmp/cc_sessions under the web root with insufficient access control, which allows remote attackers to obtain session data via a direct request related to the "default session save path."    Medium  2017-01-03  2009-04-18  View
7473  CVE-2011-0400  Cookie.php in Piwik before 1.1 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.    Medium  2017-01-07  2011-01-19  View
67457  CVE-2005-1733  Cookie Cart stores the password file under the web document root with insufficient access control, which allows remote attackers to obtain usernames and encrypted passwords via a direct request to passwd.txt.    Medium  2017-01-03  2016-10-17  View
67456  CVE-2005-1732  Cookie Cart allows remote attackers to read the Order Notification list via the testmycgi and path parameters to testmy.cgi.    Medium  2017-01-03  2016-10-17  View
4735  CVE-2008-4946  convirt 0.8.2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/set_output temporary file, related to the (1) _template_/provision.sh, (2) Linux_CD_Install/provision.sh, (3) Fedora_PV_Install/provision.sh, (4) CentOS_PV_Install/provision.sh, (5) common/provision.sh, (6) example/provision.sh, and (7) Windows_CD_Install/provision.sh scripts in image_store/.    6.9  Medium  2017-01-03  2009-07-20  View

Page 15015 of 17672, showing 5 records out of 88360 total, starting on record 75071, ending on 75075

Actions