NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6541  CVE-2008-6810  Multiple SQL injection vulnerabilities in admin/checklogin.php in Venalsur Booking Centre Booking System for Hotels Group 2.01 allow remote attackers to execute arbitrary SQL commands via the (1) myusername (username) and (2) password parameters. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-03  2009-05-18  View
6797  CVE-2008-7066  OpenForum 0.66 Beta allows remote attackers to bypass authentication and reset passwords of other users via a direct request with the update parameter set to 1 and modified user and password parameters.    7.5  High  2017-01-03  2009-08-25  View
73357  CVE-2003-0219  Kerio Personal Firewall (KPF) 2.1.4 and earlier allows remote attackers to execute administrator commands by sniffing packets from a valid session and replaying them against the remote administration server.    7.5  High  2017-01-03  2016-10-17  View
73869  CVE-2003-0764  Escapade Scripting Engine (ESP) allows remote attackers to obtain sensitive path information via a malformed request, which leaks the information in an error message, as demonstrated using the PAGE parameter.    Medium  2017-01-03  2016-10-17  View
74381  CVE-2003-1311  siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder does not ensure that the TARGET parameter names a valid redirection resource, which allows remote attackers to construct a URL that might trick users into visiting an arbitrary web site referenced by this parameter.    6.8  Medium  2017-01-03  2008-09-05  View

Page 2804 of 17672, showing 5 records out of 88360 total, starting on record 14016, ending on 14020

Actions