NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80837 | CVE-2002-1886 | TightAuction 3.0 stores config.inc under the web document root with insufficient access control, which allows remote attackers to obtain the database username and password. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
81349 | CVE-2002-2398 | The new thread posting page in APBoard 2.02 and 2.03 allows remote attackers to post messages to protected forums by modifying the insertinto parameter. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
58053 | CVE-2007-6032 | SQL injection vulnerability in calendar/page.asp in Aleris Web Publishing Server 3.0 allows remote attackers to execute arbitrary SQL commands via the mode parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
58309 | CVE-2007-6314 | BarracudaDrive Web Server before 3.8 allows remote attackers to read the source code for web scripts by appending a (1) + (plus), (2) . (dot), or (3) %80 and similar characters to the file name in the URL. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
60101 | CVE-2006-1392 | Multiple cross-site scripting (XSS) vulnerabilities in index.cgi in the login server in University of Washington Pubcookie 3.0.0, 3.1.0, 3.1.1, 3.2 before 3.2.1b, and 3.3 before 3.3.0a allow remote attackers to inject arbitrary web script or HTML via unspecified inputs. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17290 of 17672, showing 5 records out of 88360 total, starting on record 86446, ending on 86450