NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31636 | CVE-2014-3439 | ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to write to arbitrary files via unspecified vectors. | 2 | 6.1 | Medium | 2017-01-19 | 2015-07-28 | View | |
| 3173 | CVE-2008-3292 | constants.inc in EZWebAlbum 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the photoalbumadmin cookie, as demonstrated via addpage.php. | 2 | 6.4 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 5578 | CVE-2008-5847 | Constructr CMS 3.02.5 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information by reading the hash column. | 2 | 2.6 | Low | 2017-01-03 | 2009-01-29 | View | |
| 63982 | CVE-2006-5381 | Contenido CMS stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain database credentials and other information via a direct request to (1) db_msql.inc, (2) db_mssql.inc, (3) db_mysqli.inc, (4) db_oci8.inc, (5) db_odbc.inc, (6) db_oracle.inc, (7) db_pgsql.inc, or (8) db_sybase.inc in the conlib/ directory. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 5890 | CVE-2008-6159 | Content Management Made Easy (CMME) 1.19 allows remote attackers to obtain system information via a direct request to info.php, which invokes the phpinfo function. | 2 | 5 | Medium | 2017-01-03 | 2009-02-18 | View |
Page 2650 of 17672, showing 5 records out of 88360 total, starting on record 13246, ending on 13250