NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54003  CVE-2007-1831  web-app.org WebAPP before 0.9.9.6 allows remote authenticated users to open files and write "wrong data" via a crafted QUERY_STRING.    Medium  2017-01-07  2011-03-07  View
444  CVE-2008-0466  Web Wiz RTE_file_browser.asp in, as used in Web Wiz Rich Text Editor 4.0, Web Wiz Forums 9.07, and Web Wiz Newspad 1.02, does not require authentication, which allows remote attackers to list directories and read files. NOTE: this can be leveraged for listings outside the configured directory tree by exploiting a separate directory traversal vulnerability.    Medium  2017-01-03  2010-12-03  View
52133  CVE-2009-5019  Web Wiz NewsPad stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/NewsPad.mdb.    Medium  2017-01-07  2010-12-02  View
74641  CVE-2003-1571  Web Wiz Guestbook 6.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database and obtain sensitive information via a direct request for database/WWGguestbook.mdb. NOTE: it was later reported that 8.21 is also affected.    Medium  2017-01-03  2009-04-02  View
67930  CVE-2005-2228  Web Wiz Forums 7.9 and 8.0 allows remote attackers to view message titles of a hidden forum.    Medium  2017-01-03  2008-09-05  View

Page 429 of 17672, showing 5 records out of 88360 total, starting on record 2141, ending on 2145

Actions