NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5350  CVE-2008-5601  User Engine Lite ASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for users.mdb.    Medium  2017-01-03  2009-01-29  View
71142  CVE-2004-0715  The WebLogic Authentication provider for BEA WebLogic Server and WebLogic Express 8.1 through SP2 and 7.0 through SP4 does not properly clear member relationships when a group is deleted, which can cause a new group with the same name to have the members of the old group, which allows group members to gain privileges.    5.1  Medium  2017-07-18  2017-07-10  View
5862  CVE-2008-6131  Session fixation vulnerability in moziloWiki 1.0.1 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.    Medium  2017-01-03  2009-08-19  View
71398  CVE-2004-0997  Unspecified vulnerability in the ptrace MIPS assembly code in Linux kernel 2.4 before 2.4.17 allows local users to gain privileges via unknown vectors.    4.6  Medium  2016-12-20  2008-09-05  View
6118  CVE-2008-6387  Quick Tree View .NET 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to qtv.mdb.    Medium  2017-01-03  2009-08-19  View

Page 16757 of 17672, showing 5 records out of 88360 total, starting on record 83781, ending on 83785

Actions