NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5350 | CVE-2008-5601 | User Engine Lite ASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for users.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
71142 | CVE-2004-0715 | The WebLogic Authentication provider for BEA WebLogic Server and WebLogic Express 8.1 through SP2 and 7.0 through SP4 does not properly clear member relationships when a group is deleted, which can cause a new group with the same name to have the members of the old group, which allows group members to gain privileges. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
5862 | CVE-2008-6131 | Session fixation vulnerability in moziloWiki 1.0.1 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter. | 2 | 6 | Medium | 2017-01-03 | 2009-08-19 | View | |
71398 | CVE-2004-0997 | Unspecified vulnerability in the ptrace MIPS assembly code in Linux kernel 2.4 before 2.4.17 allows local users to gain privileges via unknown vectors. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
6118 | CVE-2008-6387 | Quick Tree View .NET 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to qtv.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 16757 of 17672, showing 5 records out of 88360 total, starting on record 83781, ending on 83785