NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80402  CVE-2002-1449  eUpload 1.0 stores the password.txt password file in plaintext under the web document root, which allows remote attackers to overwrite arbitrary files by reading password.txt.    7.5  High  2017-01-05  2008-09-10  View
81170  CVE-2002-2219  chetcpasswd.cgi in Pedro Lineu Orso chetcpasswd before 2.1 allows remote attackers to read the last line of the shadow file via a long user (userid) field.    7.5  High  2017-01-05  2008-09-05  View
16146  CVE-2010-4911  SQL injection vulnerability in classi/detail.php in PHP Classifieds Ads allows remote attackers to execute arbitrary SQL commands via the sid parameter.    7.5  High  2017-01-18  2012-02-13  View
81938  CVE-2016-9403  newreply.php in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to have unspecified impact by leveraging a missing permission check.    7.5  High  2017-02-08  2017-02-05  View
17426  CVE-2016-10038  Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local file inclusion/traversal/manipulation via a crafted dir parameter, related to browser/directory/remove.    7.5  High  2017-01-19  2016-12-29  View

Page 2145 of 17672, showing 5 records out of 88360 total, starting on record 10721, ending on 10725

Actions