NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79919 | CVE-2002-0922 | CGIScript.net csNews.cgi allows remote attackers to obtain database files via a direct URL-encoded request to (1) default%2edb or (2) default%2edb.style, or remote authenticated users to perform administrative actions via (3) a database parameter set to default%2edb. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80431 | CVE-2002-1478 | Cacti before 0.6.8 allows attackers to execute arbitrary commands via the "Data Input" option in console mode. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
80943 | CVE-2002-1992 | Buffer overflow in jrun.dll in ColdFusion MX, when used with IIS 4 or 5, allows remote attackers to cause a denial of service in IIS via (1) a long template file name or (2) a long HTTP header. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
53807 | CVE-2007-1623 | Multiple cross-site scripting (XSS) vulnerabilities in realGuestbook 5.01, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) bg_color_1, (2) fs_menu, (3) fc_menu, (4) ff_menu, (5) bg_color_2, (6) fs_normal, (7) fc_normal, and (8) ff_normal parameters to welcome_admin.php; and possibly unspecified other parameters and files. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
55343 | CVE-2007-3189 | Cross-site scripting (XSS) vulnerability in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.3 allows remote attackers to inject arbitrary web script or HTML via the user parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 309 of 17672, showing 5 records out of 88360 total, starting on record 1541, ending on 1545