NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6330 | CVE-2008-6599 | cookiecheck.php in CookieCheck 1.0 stores tmp/cc_sessions under the web root with insufficient access control, which allows remote attackers to obtain session data via a direct request related to the "default session save path." | 2 | 5 | Medium | 2017-01-03 | 2009-04-18 | View | |
| 7473 | CVE-2011-0400 | Cookie.php in Piwik before 1.1 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. | 2 | 5 | Medium | 2017-01-07 | 2011-01-19 | View | |
| 67457 | CVE-2005-1733 | Cookie Cart stores the password file under the web document root with insufficient access control, which allows remote attackers to obtain usernames and encrypted passwords via a direct request to passwd.txt. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 67456 | CVE-2005-1732 | Cookie Cart allows remote attackers to read the Order Notification list via the testmycgi and path parameters to testmy.cgi. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 4735 | CVE-2008-4946 | convirt 0.8.2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/set_output temporary file, related to the (1) _template_/provision.sh, (2) Linux_CD_Install/provision.sh, (3) Fedora_PV_Install/provision.sh, (4) CentOS_PV_Install/provision.sh, (5) common/provision.sh, (6) example/provision.sh, and (7) Windows_CD_Install/provision.sh scripts in image_store/. | 2 | 6.9 | Medium | 2017-01-03 | 2009-07-20 | View |
Page 15015 of 17672, showing 5 records out of 88360 total, starting on record 75071, ending on 75075