NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3292  CVE-2008-3411  The Axesstel AXW-D800 modem with D2_ETH_109_01_VEBR Jun-14-2006 software does not require authentication for (1) etc/config/System.html, (2) etc/config/Network.html, (3) etc/config/Security.html, (4) cgi-bin/sysconf.cgi, and (5) cgi-bin/route.cgi, which allows remote attackers to change the modem"s configuration via direct requests.    10  High  2017-01-03  2009-01-29  View
68828  CVE-2005-3166  Unspecified vulnerability in "edit submission handling" for MediaWiki 1.4.x before 1.4.10 and 1.3.x before 1.3.16 allows remote attackers to cause a denial of service (corruption of the previous submission) via a crafted URL.    Medium  2017-01-03  2008-09-05  View
3548  CVE-2008-3681  components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows remote attackers to reset the "first enabled user (lowest id)" password, typically for the administrator.    7.5  High  2017-01-03  2009-02-06  View
69084  CVE-2005-3423  Multiple SQL injection vulnerabilities in Subdreamer 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the loginusername parameter or (2) cookies to (a) subdreamer.php, (b) ipb2.php, (c) phpbb2.php, (d) vbulletin2.php, and (e) vbulletin3.php.    7.5  High  2017-01-03  2008-09-05  View
3804  CVE-2008-3942  SQL injection vulnerability in landsee.php in Full PHP Emlak Script allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2008-09-10  View

Page 15229 of 17672, showing 5 records out of 88360 total, starting on record 76141, ending on 76145

Actions