NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79930 | CVE-2002-0934 | Directory traversal vulnerability in Jon Hedley AlienForm2 (typically installed as af.cgi or alienform.cgi) allows remote attackers to read or modify arbitrary files via an illegal character in the middle of a .. (dot dot) sequence in the parameters (1) _browser_out or (2) _out_file. | 2 | 6.4 | Medium | 2017-01-05 | 2008-09-05 | View | |
79929 | CVE-2002-0933 | Datalex PLC BookIt! Consumer before 2.2 stores usernames and passwords in plaintext in a cookie, which could allow remote attackers to gain privileges via Cross-site scripting or sniffing attacks. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
79928 | CVE-2002-0932 | SQL injection vulnerability in index.php for MyHelpDesk 20020509, and possibly other versions, allows remote attackers to conduct unauthorized activities via SQL code in the "id" parameter for the operations (1) detailticket, (2) editticket, or (3) updateticketlog. | 2 | 6.4 | Medium | 2017-01-05 | 2008-09-05 | View | |
79927 | CVE-2002-0931 | Cross-site scripting vulnerabilities in MyHelpDesk 20020509, and possibly other versions, allows remote attackers to execute script as other users via a (1) Title or (2) Description when a new ticket is created by a support assistant, via the "id" parameter to the index.php script with the (3) tickettime, (4) ticketfiles, or (5) updateticketlog operations, or (6) via the update section when a ticket is edited. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
79926 | CVE-2002-0930 | Format string vulnerability in the FTP server for Novell Netware 6.0 SP1 (NWFTPD) allows remote attackers to cause a denial of service (ABEND) via format strings in the USER command. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 16621 of 17672, showing 5 records out of 88360 total, starting on record 83101, ending on 83105