NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6088 | CVE-2008-6357 | MyCal Personal Events Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to mycal.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-03-18 | View | |
| 6344 | CVE-2008-6613 | uploader.php in minimal-ablog 0.4 does not properly restrict access, which allows remote attackers to gain administrative privileges via a direct request. | 2 | 7.5 | High | 2017-01-03 | 2009-04-06 | View | |
| 6600 | CVE-2008-6869 | Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for config/oramon.ini. | 2 | 5 | Medium | 2017-01-03 | 2009-07-24 | View | |
| 6856 | CVE-2008-7125 | pphoto in Ariadne before 2.6 allows remote authenticated users with certain privileges to execute arbitrary shell commands via vectors related to PINP programs and the annotate command. NOTE: some of these details are obtained from third party information. | 2 | 9 | High | 2017-01-03 | 2009-08-31 | View | |
| 73160 | CVE-2003-0012 | The data collection script for Bugzilla 2.14.x before 2.14.5, 2.16.x before 2.16.2, and 2.17.x before 2.17.3 sets world-writable permissions for the data/mining directory when it runs, which allows local users to modify or delete the data. | 2 | 2.1 | Low | 2017-01-03 | 2016-10-17 | View |
Page 15679 of 17672, showing 5 records out of 88360 total, starting on record 78391, ending on 78395