NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72477 | CVE-2004-2100 | GeoHttpServer, when configured to authenticate users, allows remote attackers to bypass authentication and access unauthorized files via a URL that contains %0a%0a (encoded newlines). | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
72989 | CVE-2004-2612 | BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functionality intended for authorized users. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
58909 | CVE-2006-0169 | addresses.php3 in MyPhPim 01.05 does not restrict uploaded files, which allows remote attackers to execute arbitrary PHP code via the pdbfile variable, then directly accessing those files from the uploads directory. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59165 | CVE-2006-0427 | Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 9.0 and 8.1 through SP5 allows malicious EJBs or servlet applications to decrypt system passwords, possibly by accessing functionality that should have been restricted. | 2 | 2.1 | Low | 2016-12-20 | 2011-03-07 | View | |
59421 | CVE-2006-0690 | Multiple SQL injection vulnerabilities in TTS Time Tracking Software 3.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 163 of 17672, showing 5 records out of 88360 total, starting on record 811, ending on 815