NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5861 | CVE-2008-6130 | Cross-site scripting (XSS) vulnerability in index.php in moziloWiki 1.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) action and (2) page parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View | |
6117 | CVE-2008-6386 | Cross-site scripting (XSS) vulnerability in showads.php in Z1Exchange 1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2010-06-15 | View | |
72165 | CVE-2004-1786 | PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6885 | CVE-2008-7154 | Docebo 3.5.0.3 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) class/class.conf_fw.php, (2) class.module/class.event_manager.php, (3) lib/lib.domxml5.php, or (4) menu/menu_over.php in doceboCore/; or (5) class/class.conf_cms.php, (6) lib/lib.compose.php, (7) modules/chat/teleskill.php, or (8) class/class.admin_menu_cms.php in doceboCms/; which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2009-09-03 | View | |
7141 | CVE-2011-0002 | libuser before 0.57 uses a cleartext password value of (1) !! or (2) x for new LDAP user accounts, which makes it easier for remote attackers to obtain access by specifying one of these values. | 2 | 6.4 | Medium | 2017-01-07 | 2016-12-07 | View |
Page 16724 of 17672, showing 5 records out of 88360 total, starting on record 83616, ending on 83620