NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6088  CVE-2008-6357  MyCal Personal Events Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to mycal.mdb.    Medium  2017-01-03  2009-03-18  View
6344  CVE-2008-6613  uploader.php in minimal-ablog 0.4 does not properly restrict access, which allows remote attackers to gain administrative privileges via a direct request.    7.5  High  2017-01-03  2009-04-06  View
6600  CVE-2008-6869  Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for config/oramon.ini.    Medium  2017-01-03  2009-07-24  View
6856  CVE-2008-7125  pphoto in Ariadne before 2.6 allows remote authenticated users with certain privileges to execute arbitrary shell commands via vectors related to PINP programs and the annotate command. NOTE: some of these details are obtained from third party information.    High  2017-01-03  2009-08-31  View
73160  CVE-2003-0012  The data collection script for Bugzilla 2.14.x before 2.14.5, 2.16.x before 2.16.2, and 2.17.x before 2.17.3 sets world-writable permissions for the data/mining directory when it runs, which allows local users to modify or delete the data.    2.1  Low  2017-01-03  2016-10-17  View

Page 15679 of 17672, showing 5 records out of 88360 total, starting on record 78391, ending on 78395

Actions