NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51787 | CVE-2009-4670 | admin/delitem.php in RoomPHPlanning 1.6 does not require authentication, which allows remote attackers to (1) delete arbitrary users via the user parameter or (2) delete arbitrary rooms via the room parameter. | 2 | 7.5 | High | 2017-01-07 | 2010-03-05 | View | |
49036 | CVE-2009-1767 | admin/edituser.php in 2daybiz Template Monster Clone does not require administrative authentication, which allows remote attackers to modify arbitrary accounts via the (1) loginname, (2) password, (3) email, (4) firstname, or (5) lastname parameter. | 2 | 5 | Medium | 2017-01-07 | 2009-05-24 | View | |
49576 | CVE-2009-2328 | admin/edit_user.php in KerviNet Forum 1.1 and earlier does not require administrative authentication, which allows remote attackers to delete arbitrary accounts and conduct SQL injection attacks via the del_user_id parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-07-06 | View | |
2814 | CVE-2008-2920 | admin/filemanager/ (aka the File Manager) in EZTechhelp EZCMS 1.2 and earlier does not require authentication, which allows remote attackers to create, modify, read, and delete files. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View | |
50363 | CVE-2009-3158 | admin/files.php in simplePHPWeb 0.2 does not require authentication, which allows remote attackers to perform unspecified administrative actions via unknown vectors. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2009-09-11 | View |
Page 619 of 17672, showing 5 records out of 88360 total, starting on record 3091, ending on 3095