NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54003 | CVE-2007-1831 | web-app.org WebAPP before 0.9.9.6 allows remote authenticated users to open files and write "wrong data" via a crafted QUERY_STRING. | 2 | 6 | Medium | 2017-01-07 | 2011-03-07 | View | |
444 | CVE-2008-0466 | Web Wiz RTE_file_browser.asp in, as used in Web Wiz Rich Text Editor 4.0, Web Wiz Forums 9.07, and Web Wiz Newspad 1.02, does not require authentication, which allows remote attackers to list directories and read files. NOTE: this can be leveraged for listings outside the configured directory tree by exploiting a separate directory traversal vulnerability. | 2 | 5 | Medium | 2017-01-03 | 2010-12-03 | View | |
52133 | CVE-2009-5019 | Web Wiz NewsPad stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/NewsPad.mdb. | 2 | 5 | Medium | 2017-01-07 | 2010-12-02 | View | |
74641 | CVE-2003-1571 | Web Wiz Guestbook 6.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database and obtain sensitive information via a direct request for database/WWGguestbook.mdb. NOTE: it was later reported that 8.21 is also affected. | 2 | 5 | Medium | 2017-01-03 | 2009-04-02 | View | |
67930 | CVE-2005-2228 | Web Wiz Forums 7.9 and 8.0 allows remote attackers to view message titles of a hidden forum. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 429 of 17672, showing 5 records out of 88360 total, starting on record 2141, ending on 2145