NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3036  CVE-2008-3152  SQL injection vulnerability in directory.php in SmartPPC and SmartPPC Pro allows remote attackers to execute arbitrary SQL commands via the idDirectory parameter.    7.5  High  2017-01-03  2011-03-07  View
68572  CVE-2005-2897  WEB//NEWS 1.4 allows remote attackers to obtain sensitive information via a direct request to files in the actions directory, which reveal the path in an error message, as demonstrated using cat.add.php.    Medium  2017-01-03  2016-10-17  View
3292  CVE-2008-3411  The Axesstel AXW-D800 modem with D2_ETH_109_01_VEBR Jun-14-2006 software does not require authentication for (1) etc/config/System.html, (2) etc/config/Network.html, (3) etc/config/Security.html, (4) cgi-bin/sysconf.cgi, and (5) cgi-bin/route.cgi, which allows remote attackers to change the modem"s configuration via direct requests.    10  High  2017-01-03  2009-01-29  View
68828  CVE-2005-3166  Unspecified vulnerability in "edit submission handling" for MediaWiki 1.4.x before 1.4.10 and 1.3.x before 1.3.16 allows remote attackers to cause a denial of service (corruption of the previous submission) via a crafted URL.    Medium  2017-01-03  2008-09-05  View
3548  CVE-2008-3681  components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows remote attackers to reset the "first enabled user (lowest id)" password, typically for the administrator.    7.5  High  2017-01-03  2009-02-06  View

Page 15850 of 17672, showing 5 records out of 88360 total, starting on record 79246, ending on 79250

Actions