NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
74385  CVE-2003-1315  SQL injection vulnerability in auth.php in Land Down Under (LDU) v601 and earlier allows remote attackers to execute arbitrary SQL commands.    7.5  High  2017-01-03  2008-09-05  View
74641  CVE-2003-1571  Web Wiz Guestbook 6.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database and obtain sensitive information via a direct request for database/WWGguestbook.mdb. NOTE: it was later reported that 8.21 is also affected.    Medium  2017-01-03  2009-04-02  View
146  CVE-2008-0156  Absolute path traversal vulnerability in index.php in Million Dollar Script 2.0.14 allows remote attackers to read arbitrary files via encoded "/" (%2F) sequences in the link parameter.    Medium  2017-01-03  2008-09-05  View
402  CVE-2008-0424  SQL injection vulnerability in blog.php in Mooseguy Blog System (MGBS) 1.0 allows remote attackers to execute arbitrary SQL commands via the month parameter.    7.5  High  2017-01-03  2011-03-07  View
65938  CVE-2005-0173  squid_ldap_auth in Squid 2.5 and earlier allows remote authenticated users to bypass username-based Access Control Lists (ACLs) via a username with a space at the beginning or end, which is ignored by the LDAP server.    7.5  High  2017-01-03  2016-10-17  View

Page 15196 of 17672, showing 5 records out of 88360 total, starting on record 75976, ending on 75980

Actions