NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85057  CVE-2017-8219  TP-Link C2 and C20i devices through firmware 0.9.1 4.2 v0032.0 Build 160706 Rel.37961n allow DoSing the HTTP server via a crafted Cookie header to the /cgi/ansi URI.    Medium  2017-05-27  2017-05-09  View
52770  CVE-2007-0546  Toxiclab Shoutbox 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db.mdb.    7.8  High  2017-01-07  2008-11-13  View
66804  CVE-2005-1055  TowerBlog 0.6 and earlier stores the login data file under the web root, which allows remote attackers to obtain the MD5 checksums of the username and password via a direct request to the _dat/login file.    7.5  High  2017-07-18  2017-07-10  View
51960  CVE-2009-4843  ToutVirtual VirtualIQ Pro before 3.5 build 8691 does not require administrative authentication for JBoss console access, which allows remote attackers to execute arbitrary commands via requests to (1) the JMX Management Console or (2) the Web Console.    7.5  High  2017-01-07  2010-05-21  View
51961  CVE-2009-4844  ToutVirtual VirtualIQ Pro 3.2 build 7882 does not restrict access to the /status URI on port 9080, which allows remote attackers to obtain sensitive Tomcat information via a direct request.    Medium  2017-01-07  2010-05-21  View

Page 2479 of 17672, showing 5 records out of 88360 total, starting on record 12391, ending on 12395

Actions