NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51883 | CVE-2009-4766 | YP Portal MS-Pro Surumu (aka MS-Pro Portal Scripti) 1.0 and 1.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for galeri/database/db.mdb. | 2 | 5 | Medium | 2017-01-07 | 2010-04-14 | View | |
6501 | CVE-2008-6770 | YourPlace 1.0.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to a database containing user credentials via a direct request for users.txt. | 2 | 5 | Medium | 2017-01-03 | 2009-04-29 | View | |
6502 | CVE-2008-6771 | YourPlace 1.0.2 and earlier allows remote attackers to obtain sensitive system information via a direct request via a direct request to user/uploads/phpinfo.php, which calls the phpinfo function. | 2 | 5 | Medium | 2017-01-03 | 2009-04-29 | View | |
65005 | CVE-2006-6460 | Yourfreeworld.com Short Url & Url Tracker Script allows remote attackers to obtain sensitive information via an invalid id parameter to login.php, which leaks the path in an error message. NOTE: this issue might be resultant from CVE-2006-2509. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View | |
10396 | CVE-2011-3824 | Your Own URL Shortener (YOURLS) 1.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by includes/auth.php and certain other files. | 2 | 5 | Medium | 2017-01-07 | 2012-05-21 | View |
Page 41 of 17672, showing 5 records out of 88360 total, starting on record 201, ending on 205