NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 85057 | CVE-2017-8219 | TP-Link C2 and C20i devices through firmware 0.9.1 4.2 v0032.0 Build 160706 Rel.37961n allow DoSing the HTTP server via a crafted Cookie header to the /cgi/ansi URI. | 2 | 4 | Medium | 2017-05-27 | 2017-05-09 | View | |
| 52770 | CVE-2007-0546 | Toxiclab Shoutbox 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db.mdb. | 2 | 7.8 | High | 2017-01-07 | 2008-11-13 | View | |
| 66804 | CVE-2005-1055 | TowerBlog 0.6 and earlier stores the login data file under the web root, which allows remote attackers to obtain the MD5 checksums of the username and password via a direct request to the _dat/login file. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 51960 | CVE-2009-4843 | ToutVirtual VirtualIQ Pro before 3.5 build 8691 does not require administrative authentication for JBoss console access, which allows remote attackers to execute arbitrary commands via requests to (1) the JMX Management Console or (2) the Web Console. | 2 | 7.5 | High | 2017-01-07 | 2010-05-21 | View | |
| 51961 | CVE-2009-4844 | ToutVirtual VirtualIQ Pro 3.2 build 7882 does not restrict access to the /status URI on port 9080, which allows remote attackers to obtain sensitive Tomcat information via a direct request. | 2 | 5 | Medium | 2017-01-07 | 2010-05-21 | View |
Page 2479 of 17672, showing 5 records out of 88360 total, starting on record 12391, ending on 12395