NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80431  CVE-2002-1478  Cacti before 0.6.8 allows attackers to execute arbitrary commands via the "Data Input" option in console mode.    10  High  2017-01-05  2008-09-05  View
80432  CVE-2002-1479  Cacti before 0.6.8 stores a MySQL username and password in plaintext in config.php, which has world-readable permissions, which allows local users modify databases as the Cacti user and possibly gain privileges.    4.6  Medium  2017-01-05  2008-09-05  View
13164  CVE-2010-1645  Cacti before 0.8.7f, as used in Red Hat High Performance Computing (HPC) Solution and other products, allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in (1) the FQDN field of a Device or (2) the Vertical Label field of a Graph Template.    6.5  Medium  2017-01-18  2012-02-15  View
55215  CVE-2007-3061  Cactushop 6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) cactushop6.mdb or (2) cactushop5.mdb.    7.8  High  2017-01-07  2012-10-30  View
80419  CVE-2002-1466  CafeLog b2 Weblog Tool 2.06pre4, with allow_fopen_url enabled, allows remote attackers to execute arbitrary PHP code via the b2inc variable.    10  High  2017-01-05  2008-09-05  View

Page 2292 of 17672, showing 5 records out of 88360 total, starting on record 11456, ending on 11460

Actions