NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22409 | CVE-2016-9563 | BC-BMT-BPM-DSK in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML External Entity (XXE) attacks via the sap.com~tc~bpem~him~uwlconn~provider~web/bpemuwlconn URI, aka SAP Security Note 2296909. | 2 | 6 | Medium | 2017-01-19 | 2016-11-29 | View | |
77798 | CVE-2001-0320 | bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
35996 | CVE-2014-9254 | bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks via the code parameter in an unsubscribe action to index.php. | 2 | 7.5 | High | 2017-01-19 | 2015-01-02 | View | |
4522 | CVE-2008-4708 | BbZL.PhP 0.92 allows remote attackers to bypass authentication and gain administrative access by setting the phorum_admin_session cookie to 1. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
14658 | CVE-2010-3244 | BbtsConnection_Edit.exe in Blackboard Transact Suite (formerly Blackboard Commerce Suite) before 3.6.0.2 relies on field names when determining whether it is appropriate to decrypt a connection.xml field value, which allows local users to discover the database password via a modified connection.xml file that contains an encrypted password in the <Server> field. | 2 | 4.6 | Medium | 2017-01-18 | 2010-09-08 | View |
Page 16169 of 17672, showing 5 records out of 88360 total, starting on record 80841, ending on 80845