NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66323 | CVE-2005-0571 | admin_loader.php in PunBB 1.2.1 allows remote attackers to read arbitrary files via the plugin parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
26780 | CVE-2015-5692 | admin_messages.php in the management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to execute arbitrary code by uploading a file with a safe extension and content type, and then leveraging an improper Sudo configuration to make this a setuid-root file. | 2 | 7.9 | High | 2017-01-19 | 2016-12-21 | View | |
69096 | CVE-2005-3435 | admin_news.php in Archilles Newsworld up to 1.3.0 allows attackers to bypass authentication by obtaining the password hash for another user, for example through another Newsworld vulnerability, and specifying the hash in the pwd argument. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
66398 | CVE-2005-0647 | admin_setup.php in paNews 2.0.4b allows remote attackers to inject arbitrary PHP code via the (1) $form[comments] or (2) $form[autoapprove] parameters, which are written to config.php. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
80490 | CVE-2002-1537 | admin_ug_auth.php in phpBB 2.0.0 allows local users to gain administrator privileges by directly calling admin_ug_auth.php with modifed form fields such as "u". | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View |
Page 634 of 17672, showing 5 records out of 88360 total, starting on record 3166, ending on 3170