NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79528 | CVE-2002-0523 | ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
79529 | CVE-2002-0524 | ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect cookies, or (2) calling Post.asp with certain arguments, which leak the pathname in an error message. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
79527 | CVE-2002-0522 | ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" cookie. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
72167 | CVE-2004-1788 | ASP-Nuke 1.3 and earlier places user credentials under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to main.mdb. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
5656 | CVE-2008-5925 | ASP-DEv XM Events Diary stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for diary.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-23 | View |
Page 16244 of 17672, showing 5 records out of 88360 total, starting on record 81216, ending on 81220