NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66981 | CVE-2005-1235 | auction_my_auctions.php in phpbb-Auction 1.2m and earlier allows remote attackers to obtain sensitive information via an invalid mode parameter, which leaks the full path in a PHP error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
76927 | CVE-2000-0686 | Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the fromfile parameter. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
76928 | CVE-2000-0687 | Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the catdir parameter. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
76931 | CVE-2000-0690 | Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter. | 2 | 10 | High | 2017-01-05 | 2008-09-10 | View | |
77051 | CVE-2000-0810 | Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack. | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View |
Page 16221 of 17672, showing 5 records out of 88360 total, starting on record 81101, ending on 81105