NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49837 | CVE-2009-2594 | Cross-site scripting (XSS) vulnerability in censura.php in Censura 1.16.04 allows remote attackers to inject arbitrary web script or HTML via the itemid parameter in a details action. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-24 | View | |
| 6600 | CVE-2008-6869 | Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for config/oramon.ini. | 2 | 5 | Medium | 2017-01-03 | 2009-07-24 | View | |
| 6601 | CVE-2008-6870 | Merlix Educate Server allows remote attackers to bypass intended security restrictions and obtain sensitive information via a direct request to (1) config.asp and (2) users.asp. | 2 | 5 | Medium | 2017-01-03 | 2009-07-24 | View | |
| 6602 | CVE-2008-6871 | Merlix Educate Server stores db.mdb under the web root with insufficient access control, which allows remote attackers to obtain unspecified sensitive information via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2009-07-24 | View | |
| 6603 | CVE-2008-6872 | ASPThai.NET ASPThai Forums 8.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/aspthaiForum.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-07-24 | View |
Page 3251 of 17672, showing 5 records out of 88360 total, starting on record 16251, ending on 16255