NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47793  CVE-2009-0461  Whole Hog Password Protect: Enhanced 1.x allows remote attackers to bypass authentication and obtain administrative access via an integer value in the adminid cookie.    7.5  High  2017-01-07  2009-03-06  View
75633  CVE-1999-0983  Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.    7.5  High  2017-01-05  2008-09-09  View
59383  CVE-2006-0652  WHMCompleteSolution (WHMCS) before 2.3 assigns incorrect permissions to "resellers", which allows remote authenticated users to perform privileged actions or obtain sensitive information. NOTE: this report is based on a vendor bug report that identified "incorrect permissions." However, the vendor did not label it a security issue, and there was no statement regarding whether or not the permissions were actually more permissive than intended. If in fact the permissions were more restrictive than intended, then this would be a functional problem but not a vulnerability.    6.5  Medium  2016-12-20  2011-03-07  View
71801  CVE-2004-1422  WHM AutoPilot 2.4.6.5 and earlier allows remote attackers to gain sensitive information via phpinfo, which reveals php settings.    Medium  2017-07-18  2017-07-10  View
68353  CVE-2005-2664  Whisper 32 1.16, and possibly earlier versions, stores passwords in plaintext in memory, which allows local users to obtain the password using a debugger or another mechanism to read process memory.    2.1  Low  2017-01-03  2016-10-17  View

Page 244 of 17672, showing 5 records out of 88360 total, starting on record 1216, ending on 1220

Actions