NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
77398 | CVE-2000-1166 | Twig webmail system does not properly set the "vhosts" variable if it is not configured on the site, which allows remote attackers to insert arbitrary PHP (PHP3) code by specifying an alternate vhosts as an argument to the index.php3 program. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
77654 | CVE-2001-0176 | The setuid doroot program in Voyant Sonata 3.x executes arbitrary command line arguments, which allows local users to gain root privileges. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View | |
77910 | CVE-2001-0437 | upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to upload_file. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78166 | CVE-2001-0713 | Sendmail before 8.12.1 does not properly drop privileges when the -C option is used to load custom configuration files, which allows local users to gain privileges via malformed arguments in the configuration file whose names contain characters with the high bit set, such as (1) macro names that are one character long, (2) a variable setting which is processed by the setoption function, or (3) a Modifiers setting which is processed by the getmodifiers function. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
78422 | CVE-2001-0986 | SQLQHit.asp sample file in Microsoft Index Server 2.0 allows remote attackers to obtain sensitive information such as the physical path, file attributes, or portions of source code by directly calling sqlqhit.asp with a CiScope parameter set to (1) webinfo, (2) extended_fileinfo, (3) extended_webinfo, or (4) fileinfo. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 16523 of 17672, showing 5 records out of 88360 total, starting on record 82611, ending on 82615