NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79920 | CVE-2002-0923 | CGIScript.net csNews.cgi allows remote authenticated users to read arbitrary files, and possibly gain privileges, via the (1) pheader or (2) pfooter parameters in the "Advanced Settings" capability. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
80432 | CVE-2002-1479 | Cacti before 0.6.8 stores a MySQL username and password in plaintext in config.php, which has world-readable permissions, which allows local users modify databases as the Cacti user and possibly gain privileges. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
80944 | CVE-2002-1993 | webbbs_post.pl in WebBBS 4 and 5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the followup parameter. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
53552 | CVE-2007-1367 | Cross-site scripting (XSS) vulnerability in the login page in Avaya Communications Manager (CM) S87XX, S8500, and S8300 products before 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the Login field. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
54064 | CVE-2007-1894 | Cross-site scripting (XSS) vulnerability in wp-includes/general-template.php in WordPress before 20070309 allows remote attackers to inject arbitrary web script or HTML via the year parameter in the wp_title function. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 16291 of 17672, showing 5 records out of 88360 total, starting on record 81451, ending on 81455