NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65266  CVE-2006-6722  Bandwebsite (aka Bandsite portal system) 1.5 allows remote attackers to create administrative accounts via a direct request to admin.php with the Login parameter set to 1.    7.5  High  2016-12-20  2011-03-07  View
6787  CVE-2008-7056  BandSite CMS 1.1.4 does not perform access control for adminpanel/phpmydump.php, which allows remote attackers to obtain copies of the database via a direct request.    Medium  2017-01-03  2009-08-27  View
5247  CVE-2008-5497  BandSite CMS 1.1.4 allows remote attackers to bypass authentication and gain administrative access by setting the login_auth cookie to true.    7.5  High  2017-01-03  2009-01-29  View
57967  CVE-2007-5942  Bandersnatch 0.4 allows remote attackers to obtain sensitive information via a malformed request for index.php with (1) a certain func parameter value; or (2) certain func, jid, page, and limit parameter values; which reveals the path in various error messages.    Medium  2017-01-07  2008-09-05  View
78587  CVE-2001-1152  Baltimore Technologies WEBsweeper 4.02, when used to manage URL blacklists, allows remote attackers to bypass blacklist restrictions and connect to unauthorized web servers by modifying the requested URL, including (1) a // (double slash), (2) a /SUBDIR/.. where the desired file is in the parentdir, (3) a /./, or (4) URL-encoded characters.    7.5  High  2017-01-05  2008-09-05  View

Page 16181 of 17672, showing 5 records out of 88360 total, starting on record 80901, ending on 80905

Actions