NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68035 | CVE-2005-2334 | Y.SAK allows remote attackers to execute arbitrary commands via shell metacharacters in the $no variable to (1) w_s3mbfm.cgi, (2) w_s3adix.cgi, or (3) w_s3sbfm.cgi. | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View | |
70745 | CVE-2004-0294 | YaBB 1 SP 1.3.1 displays different error messages when a user exists or not, which makes it easier for remote attackers to identify valid users and conduct a brute force password guessing attack. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
77087 | CVE-2000-0853 | YaBB Bulletin Board 9.1.2000 allows remote attackers to read arbitrary files via a .. (dot dot) attack. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
72041 | CVE-2004-1662 | YaBB SE 1.5.1 allows remote attackers to obtain sensitive information via a direct HTTP request to Admin.php, which reveals the full path in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67997 | CVE-2005-2296 | YabbSE 1.5.5c allows remote attackers to obtain sensitive information via a direct request to ssi_examples.php, which reveals the path. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 17623 of 17672, showing 5 records out of 88360 total, starting on record 88111, ending on 88115