NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
66981  CVE-2005-1235  auction_my_auctions.php in phpbb-Auction 1.2m and earlier allows remote attackers to obtain sensitive information via an invalid mode parameter, which leaks the full path in a PHP error message.    Medium  2017-01-03  2008-09-05  View
76927  CVE-2000-0686  Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the fromfile parameter.    Medium  2017-01-05  2008-09-05  View
76928  CVE-2000-0687  Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the catdir parameter.    10  High  2017-01-05  2008-09-05  View
76931  CVE-2000-0690  Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter.    10  High  2017-01-05  2008-09-10  View
77051  CVE-2000-0810  Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.    7.5  High  2017-01-05  2008-09-10  View

Page 16221 of 17672, showing 5 records out of 88360 total, starting on record 81101, ending on 81105

Actions