NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67373 | CVE-2005-1648 | Gurgens (GASoft) Ultimate Forum 1.0 stores the db/Genid.dat database file under the web document root with insufficient access control, which allows remote attackers to obtain and decrypt usernames and passwords. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2093 | CVE-2008-2166 | Cross-site scripting (XSS) vulnerability in the search module in Sun Java System Web Server 6.1 before SP9 and 7.0 before Update 2 allows remote attackers to inject arbitrary web script or HTML via unknown parameters in index.jsp. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
67629 | CVE-2005-1911 | The fetchnews NNTP client in leafnode 1.11.2 and earlier can hang while waiting for input that never arrives, which allows remote NNTP servers to cause a denial of service (news loss). | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2349 | CVE-2008-2433 | The web management console in Trend Micro OfficeScan 7.0 through 8.0, Worry-Free Business Security 5.0, and Client/Server/Messaging Suite 3.5 and 3.6 creates a random session token based only on the login time, which makes it easier for remote attackers to hijack sessions via brute-force attacks. NOTE: this can be leveraged for code execution through an unspecified "manipulation of the configuration." | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
67885 | CVE-2005-2183 | class.xmail.php in PhpXmail 0.7 through 1.1 does not properly handle large passwords, which prevents an error message from being returned and allows remote attackers to bypass authentication and gain unauthorized access. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 1913 of 17672, showing 5 records out of 88360 total, starting on record 9561, ending on 9565