NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 80419 | CVE-2002-1466 | CafeLog b2 Weblog Tool 2.06pre4, with allow_fopen_url enabled, allows remote attackers to execute arbitrary PHP code via the b2inc variable. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
| 55215 | CVE-2007-3061 | Cactushop 6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) cactushop6.mdb or (2) cactushop5.mdb. | 2 | 7.8 | High | 2017-01-07 | 2012-10-30 | View | |
| 13164 | CVE-2010-1645 | Cacti before 0.8.7f, as used in Red Hat High Performance Computing (HPC) Solution and other products, allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in (1) the FQDN field of a Device or (2) the Vertical Label field of a Graph Template. | 2 | 6.5 | Medium | 2017-01-18 | 2012-02-15 | View | |
| 80432 | CVE-2002-1479 | Cacti before 0.6.8 stores a MySQL username and password in plaintext in config.php, which has world-readable permissions, which allows local users modify databases as the Cacti user and possibly gain privileges. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 80431 | CVE-2002-1478 | Cacti before 0.6.8 allows attackers to execute arbitrary commands via the "Data Input" option in console mode. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View |
Page 15381 of 17672, showing 5 records out of 88360 total, starting on record 76901, ending on 76905