NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52170  CVE-2009-5066  twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.    2.1  Low  2017-01-07  2015-01-17  View
78783  CVE-2001-1348  TWIG 2.6.2 and earlier allows remote attackers to perform unauthorized database operations via a SQL injection attack on the id parameter.    7.5  High  2017-01-05  2008-09-05  View
77398  CVE-2000-1166  Twig webmail system does not properly set the "vhosts" variable if it is not configured on the site, which allows remote attackers to insert arbitrary PHP (PHP3) code by specifying an alternate vhosts as an argument to the index.php3 program.    7.5  High  2017-01-05  2008-09-05  View
85161  CVE-2016-4862  Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with CS-Cart Multi-Vendor 4.3.9 and earlier allow remote authenticated users to execute arbitrary PHP code on the servers.    6.5  Medium  2017-04-27  2017-04-26  View
62014  CVE-2006-3336  TWiki 01-Dec-2000 up to 4.0.3 allows remote attackers to bypass the upload filter and execute arbitrary code via filenames with double extensions such as ".php.en", ".php.1", and other allowed extensions that are not .txt. NOTE: this is only a vulnerability when the server allows script execution in the pub directory.    Medium  2016-12-20  2011-03-07  View

Page 15226 of 17672, showing 5 records out of 88360 total, starting on record 76126, ending on 76130

Actions