NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
33117 | CVE-2014-5448 | Zarafa 5.00 uses world-readable permissions for the files in the log directory, which allows local users to obtain sensitive information by reading the log files. | 2 | 2.1 | Low | 2017-01-19 | 2015-11-17 | View | |
72573 | CVE-2004-2196 | Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
48820 | CVE-2009-1550 | Zakkis Technology ABC Advertise 1.0 does not properly restrict access to admin.inc.php, which allows remote attackers to obtain the administrator login name and password via a direct request. | 2 | 5 | Medium | 2017-01-07 | 2009-05-07 | View | |
76081 | CVE-1999-1431 | ZAK in Appstation mode allows users to bypass the "Run only allowed apps" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and changing the name to that for an allowed application, such as Winword.exe. | 2 | 4.6 | Medium | 2017-01-05 | 2016-10-17 | View | |
9943 | CVE-2011-3263 | zabbix_agentd in Zabbix before 1.8.6 and 1.9.x before 1.9.4 allows context-dependent attackers to cause a denial of service (CPU consumption) by executing the vfs.file.cksum command for a special device, as demonstrated by the /dev/urandom device. | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View |
Page 37 of 17672, showing 5 records out of 88360 total, starting on record 181, ending on 185