NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
79920  CVE-2002-0923  CGIScript.net csNews.cgi allows remote authenticated users to read arbitrary files, and possibly gain privileges, via the (1) pheader or (2) pfooter parameters in the "Advanced Settings" capability.    7.5  High  2017-01-05  2008-09-05  View
80432  CVE-2002-1479  Cacti before 0.6.8 stores a MySQL username and password in plaintext in config.php, which has world-readable permissions, which allows local users modify databases as the Cacti user and possibly gain privileges.    4.6  Medium  2017-01-05  2008-09-05  View
80944  CVE-2002-1993  webbbs_post.pl in WebBBS 4 and 5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the followup parameter.    10  High  2017-01-05  2008-09-05  View
53552  CVE-2007-1367  Cross-site scripting (XSS) vulnerability in the login page in Avaya Communications Manager (CM) S87XX, S8500, and S8300 products before 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the Login field.    4.3  Medium  2017-01-07  2008-09-05  View
54064  CVE-2007-1894  Cross-site scripting (XSS) vulnerability in wp-includes/general-template.php in WordPress before 20070309 allows remote attackers to inject arbitrary web script or HTML via the year parameter in the wp_title function.    4.3  Medium  2017-01-07  2008-09-05  View

Page 16291 of 17672, showing 5 records out of 88360 total, starting on record 81451, ending on 81455

Actions