NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
56544 | CVE-2007-4419 | Admin.php in Olate Download (od) 3.4.1 uses an MD5 hash of the admin username, user id, and group id, to compose the OD3_AutoLogin authentication cookie, which makes it easier for remote attackers to guess the cookie and access the Admin area. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View | |
54417 | CVE-2007-2250 | admin.php in Phorum before 5.1.22 allows remote attackers to obtain the full path via the module[] parameter. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
64013 | CVE-2006-5412 | admin.php in PHP Outburst Easynews 4.4.1 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication, and gain the ability to execute arbitrary code, via the en_login_id parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
78467 | CVE-2001-1032 | admin.php in PHP-Nuke 5.2 and earlier, except 5.0RC1, does not check login credentials for upload operations, which allows remote attackers to copy and upload arbitrary files and read the PHP-Nuke configuration file by directly calling admin.php with an upload parameter and specifying the file to copy. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
59807 | CVE-2006-1085 | admin.php in PHP-Stats 0.1.9.1 and earlier allows remote attackers to bypass authentication, gain administrator privileges, and execute arbitrary PHP code by modifying the option[admin_pass] parameter and setting the pass_cookie to the MD5 hash of the specified password. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View |
Page 610 of 17672, showing 5 records out of 88360 total, starting on record 3046, ending on 3050