NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
74453 | CVE-2003-1383 | WEB-ERP 0.1.4 and earlier allows remote attackers to obtain sensitive information via an HTTP request for the logicworks.ini file, which contains the MySQL database username and password. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
74018 | CVE-2003-0941 | web-tools in SAP DB before 7.4.03.30 allows remote attackers to access the Web Agent Administration pages and modify configuration via a direct request to waadmin.wa. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
74020 | CVE-2003-0943 | web-tools in SAP DB before 7.4.03.30 installs several services that are enabled by default, which could allow remote attackers to obtain potentially sensitive information or redirect attacks against internal databases via (1) waecho, (2) Web SQL Interface (websql), or (3) Web Database Manager (webdbm). | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68572 | CVE-2005-2897 | WEB//NEWS 1.4 allows remote attackers to obtain sensitive information via a direct request to files in the actions directory, which reveal the path in an error message, as demonstrated using cat.add.php. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
20037 | CVE-2016-4360 | web/admin/data.js in the Performance Center Virtual Table Server (VTS) component in HPE LoadRunner 11.52 through patch 3, 12.00 through patch 1, 12.01 through patch 3, 12.02 through patch 2, and 12.50 through patch 3 and Performance Center 11.52 through patch 3, 12.00 through patch 1, 12.01 through patch 3, 12.20 through patch 2, and 12.50 through patch 1 do not restrict file paths sent to an unlink call, which allows remote attackers to delete arbitrary files via the path parameter to data/import_csv, aka ZDI-CAN-3555. | 2 | 6.4 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 17246 of 17672, showing 5 records out of 88360 total, starting on record 86226, ending on 86230