NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
7027  CVE-2008-7301  SQL injection vulnerability in admin/login.php in jSite 1.0 OE allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-03  2012-05-14  View
73331  CVE-2003-0190  OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user does not exist, which allows remote attackers to determine valid usernames via a timing attack.    Medium  2017-01-03  2016-10-17  View
73587  CVE-2003-0460  The rotatelogs program on Apache before 1.3.28, for Windows and OS/2 systems, does not properly ignore certain control characters that are received over the pipe, which could allow remote attackers to cause a denial of service.    Medium  2017-01-03  2008-09-05  View
73843  CVE-2003-0737  The calendar module in phpWebSite 0.9.x and earlier allows remote attackers to obtain the full pathname of phpWebSite via an invalid year, which generates an error from localtime() in TimeZone.php of the Pear library.    Medium  2017-01-03  2016-10-17  View
74611  CVE-2003-1541  PlanetMoon Guestbook tr3.a stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the admin script password, and other passwords, via a direct request to files/passwd.txt.    Medium  2017-01-03  2008-09-05  View

Page 2568 of 17672, showing 5 records out of 88360 total, starting on record 12836, ending on 12840

Actions