NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1928 | CVE-2008-1992 | Acidcat CMS 3.4.1 does not properly restrict access to (1) default_mail_aspemail.asp, (2) default_mail_cdosys.asp or (3) default_mail_jmail.asp, which allows remote attackers to bypass restrictions and relay email messages with modified From, FromName, and To fields. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
69969 | CVE-2005-4371 | Acidcat 2.1.13 and earlier stores the database under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a request to databases/acidcat.mdb. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
10269 | CVE-2011-3697 | Achievo 1.4.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by modules/graph/jpgraph/jpgraph_radar.php and certain other files. | 2 | 5 | Medium | 2017-01-07 | 2012-03-13 | View | |
65319 | CVE-2006-6775 | acFTP 1.5 allows remote authenticated users to cause a denial of service via a crafted argument to the (1) REST or (2) PBSZ command. | 2 | 3.5 | Low | 2016-12-20 | 2011-03-07 | View | |
81368 | CVE-2002-2417 | acFTP 1.4 does not properly handle when an invalid password is provided by the user during authentication, which allows remote attackers to hide or misrepresent certain activity from log files and possibly gain privileges. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View |
Page 17094 of 17672, showing 5 records out of 88360 total, starting on record 85466, ending on 85470