NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
22409  CVE-2016-9563  BC-BMT-BPM-DSK in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML External Entity (XXE) attacks via the sap.com~tc~bpem~him~uwlconn~provider~web/bpemuwlconn URI, aka SAP Security Note 2296909.    Medium  2017-01-19  2016-11-29  View
77798  CVE-2001-0320  bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument.    10  High  2017-01-05  2008-09-05  View
35996  CVE-2014-9254  bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks via the code parameter in an unsubscribe action to index.php.    7.5  High  2017-01-19  2015-01-02  View
4522  CVE-2008-4708  BbZL.PhP 0.92 allows remote attackers to bypass authentication and gain administrative access by setting the phorum_admin_session cookie to 1.    7.5  High  2017-01-03  2009-08-19  View
14658  CVE-2010-3244  BbtsConnection_Edit.exe in Blackboard Transact Suite (formerly Blackboard Commerce Suite) before 3.6.0.2 relies on field names when determining whether it is appropriate to decrypt a connection.xml field value, which allows local users to discover the database password via a modified connection.xml file that contains an encrypted password in the <Server> field.    4.6  Medium  2017-01-18  2010-09-08  View

Page 16169 of 17672, showing 5 records out of 88360 total, starting on record 80841, ending on 80845

Actions