NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6254 | CVE-2008-6523 | auth.php in openInvoice 0.90 beta and earlier allows remote attackers to bypass authentication and gain privileges by setting the oiauth cookie. NOTE: this can be leveraged with a separate vulnerability in resetpass.php to modify passwords for arbitrary users. | 2 | 7.5 | High | 2017-01-03 | 2009-03-26 | View | |
61149 | CVE-2006-2450 | auth.c in LibVNCServer 0.7.1 allows remote attackers to bypass authentication via a request in which the client specifies an insecure security type such as "Type 1 - None", which is accepted even if it is not offered by the server, a different issue than CVE-2006-2369. | 2 | 7.5 | High | 2016-12-20 | 2014-11-11 | View | |
2190 | CVE-2008-2269 | AustinSmoke GasTracker (AS-GasTracker) 1.0.0 allows remote attackers to bypass authentication and gain privileges by setting the gastracker_admin cookie to TRUE. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
66406 | CVE-2005-0655 | auraCMS 1.5 allows remote attackers to obtain sensitive information via an HTTP request with an invalid id parameter to (1) teman.php, (2) hal.php, or (3) arsip.php, which reveals the path in a PHP error message. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
74527 | CVE-2003-1457 | Auerswald COMsuite CTI ControlCenter 3.1 creates a default "runasositron" user account with an easily guessable password, which allows local users or remote attackers to gain access. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 16217 of 17672, showing 5 records out of 88360 total, starting on record 81081, ending on 81085