NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 80431 | CVE-2002-1478 | Cacti before 0.6.8 allows attackers to execute arbitrary commands via the "Data Input" option in console mode. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
| 80432 | CVE-2002-1479 | Cacti before 0.6.8 stores a MySQL username and password in plaintext in config.php, which has world-readable permissions, which allows local users modify databases as the Cacti user and possibly gain privileges. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 13164 | CVE-2010-1645 | Cacti before 0.8.7f, as used in Red Hat High Performance Computing (HPC) Solution and other products, allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in (1) the FQDN field of a Device or (2) the Vertical Label field of a Graph Template. | 2 | 6.5 | Medium | 2017-01-18 | 2012-02-15 | View | |
| 55215 | CVE-2007-3061 | Cactushop 6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) cactushop6.mdb or (2) cactushop5.mdb. | 2 | 7.8 | High | 2017-01-07 | 2012-10-30 | View | |
| 80419 | CVE-2002-1466 | CafeLog b2 Weblog Tool 2.06pre4, with allow_fopen_url enabled, allows remote attackers to execute arbitrary PHP code via the b2inc variable. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View |
Page 2292 of 17672, showing 5 records out of 88360 total, starting on record 11456, ending on 11460