NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
31636  CVE-2014-3439  ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to write to arbitrary files via unspecified vectors.    6.1  Medium  2017-01-19  2015-07-28  View
3173  CVE-2008-3292  constants.inc in EZWebAlbum 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the photoalbumadmin cookie, as demonstrated via addpage.php.    6.4  Medium  2017-01-03  2009-01-29  View
5578  CVE-2008-5847  Constructr CMS 3.02.5 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information by reading the hash column.    2.6  Low  2017-01-03  2009-01-29  View
63982  CVE-2006-5381  Contenido CMS stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain database credentials and other information via a direct request to (1) db_msql.inc, (2) db_mssql.inc, (3) db_mysqli.inc, (4) db_oci8.inc, (5) db_odbc.inc, (6) db_oracle.inc, (7) db_pgsql.inc, or (8) db_sybase.inc in the conlib/ directory.    Medium  2016-12-20  2008-09-05  View
5890  CVE-2008-6159  Content Management Made Easy (CMME) 1.19 allows remote attackers to obtain system information via a direct request to info.php, which invokes the phpinfo function.    Medium  2017-01-03  2009-02-18  View

Page 2650 of 17672, showing 5 records out of 88360 total, starting on record 13246, ending on 13250

Actions