NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64790  CVE-2006-6229  Codewalkers ltwCalendar (aka PHP Event Calendar) before 4.2.1 logs failed passwords, which might allow attackers to infer correct passwords from the log file.    Medium  2016-12-20  2008-09-05  View
27374  CVE-2015-6463  CodeWrights HART Comm DTM components, as used with Endress+Hauser FieldCare, allow remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via a longtag XML schema containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    5.8  Medium  2017-01-19  2015-09-29  View
77583  CVE-2001-0103  CoffeeCup Direct and Free FTP clients uses weak encryption to store passwords in the FTPServers.ini file, which could allow attackers to easily decrypt the passwords.    4.6  Medium  2017-01-05  2008-09-05  View
74464  CVE-2003-1394  CoffeeCup Software Password Wizard 4.0 stores sensitive information such as usernames and passwords in a .apw file under the web document root with insufficient access control, which allows remote attackers to obtain that information via a direct request for the file.    Medium  2017-01-03  2008-09-05  View
18533  CVE-2016-2288  Cogent DataHub before 7.3.10 allows local users to gain privileges by leveraging the user or guest role to modify a file.    7.2  High  2017-01-19  2016-04-04  View

Page 2617 of 17672, showing 5 records out of 88360 total, starting on record 13081, ending on 13085

Actions