NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67373  CVE-2005-1648  Gurgens (GASoft) Ultimate Forum 1.0 stores the db/Genid.dat database file under the web document root with insufficient access control, which allows remote attackers to obtain and decrypt usernames and passwords.    7.5  High  2017-01-03  2008-09-05  View
2093  CVE-2008-2166  Cross-site scripting (XSS) vulnerability in the search module in Sun Java System Web Server 6.1 before SP9 and 7.0 before Update 2 allows remote attackers to inject arbitrary web script or HTML via unknown parameters in index.jsp.    4.3  Medium  2017-01-03  2011-03-07  View
67629  CVE-2005-1911  The fetchnews NNTP client in leafnode 1.11.2 and earlier can hang while waiting for input that never arrives, which allows remote NNTP servers to cause a denial of service (news loss).    Medium  2017-01-03  2008-09-05  View
2349  CVE-2008-2433  The web management console in Trend Micro OfficeScan 7.0 through 8.0, Worry-Free Business Security 5.0, and Client/Server/Messaging Suite 3.5 and 3.6 creates a random session token based only on the login time, which makes it easier for remote attackers to hijack sessions via brute-force attacks. NOTE: this can be leveraged for code execution through an unspecified "manipulation of the configuration."    7.5  High  2017-01-03  2011-03-07  View
67885  CVE-2005-2183  class.xmail.php in PhpXmail 0.7 through 1.1 does not properly handle large passwords, which prevents an error message from being returned and allows remote attackers to bypass authentication and gain unauthorized access.    7.5  High  2017-01-03  2016-10-17  View

Page 1913 of 17672, showing 5 records out of 88360 total, starting on record 9561, ending on 9565

Actions