NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 52170 | CVE-2009-5066 | twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments. | 2 | 2.1 | Low | 2017-01-07 | 2015-01-17 | View | |
| 78783 | CVE-2001-1348 | TWIG 2.6.2 and earlier allows remote attackers to perform unauthorized database operations via a SQL injection attack on the id parameter. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
| 77398 | CVE-2000-1166 | Twig webmail system does not properly set the "vhosts" variable if it is not configured on the site, which allows remote attackers to insert arbitrary PHP (PHP3) code by specifying an alternate vhosts as an argument to the index.php3 program. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
| 85161 | CVE-2016-4862 | Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with CS-Cart Multi-Vendor 4.3.9 and earlier allow remote authenticated users to execute arbitrary PHP code on the servers. | 2 | 6.5 | Medium | 2017-04-27 | 2017-04-26 | View | |
| 62014 | CVE-2006-3336 | TWiki 01-Dec-2000 up to 4.0.3 allows remote attackers to bypass the upload filter and execute arbitrary code via filenames with double extensions such as ".php.en", ".php.1", and other allowed extensions that are not .txt. NOTE: this is only a vulnerability when the server allows script execution in the pub directory. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 15226 of 17672, showing 5 records out of 88360 total, starting on record 76126, ending on 76130