NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80609  CVE-2002-1656  X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the password, e.g. via sniffing or the users.txt data file, and providing it in a cookie.    7.5  High  2017-07-18  2017-07-10  View
15329  CVE-2010-4006  Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.    7.5  High  2017-01-18  2010-12-07  View
80865  CVE-2002-1914  dump 0.4 b10 through b29 allows local users to cause a denial of service (execution prevention) by using flock() to lock the /etc/dumpdates file.    2.1  Low  2017-01-05  2008-09-05  View
15585  CVE-2010-4330  Directory traversal vulnerability in includes/controller.php in Pulse CMS Basic before 1.2.9 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter to index.php.    6.8  Medium  2017-01-18  2013-08-31  View
81121  CVE-2002-2170  Working Resources Inc. BadBlue Enterprise Edition 1.7 through 1.74 attempts to restrict administrator actions to the IP address of the local host, but does not provide additional authentication, which allows remote attackers to execute arbitrary code via a web page containing an HTTP POST request that accesses the dir.hts page on the localhost and adds an entire hard drive to be shared.    7.5  High  2017-01-05  2008-09-05  View

Page 15588 of 17672, showing 5 records out of 88360 total, starting on record 77936, ending on 77940

Actions