NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65851 | CVE-2005-0071 | vdr before 1.2.6 does not securely create files, which allows attackers to overwrite arbitrary files. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
36227 | CVE-2014-9575 | VDG Security SENSE (formerly DIVA) before 2.3.15 allows remote attackers to bypass authentication, and consequently read and modify arbitrary plugin settings, via an encoded : (colon) character in the Authorization HTTP header. | 2 | 6.4 | Medium | 2017-01-19 | 2015-01-08 | View | |
36231 | CVE-2014-9579 | VDG Security SENSE (formerly DIVA) 2.3.13 stores administrator credentials in cleartext, which allows attackers to obtain sensitive information by reading the plugin configuration files. | 2 | 5 | Medium | 2017-01-19 | 2015-01-08 | View | |
36229 | CVE-2014-9577 | VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain usernames and password hashes by logging in to TCP port 51410 and reading the response. | 2 | 4 | Medium | 2017-01-19 | 2015-01-08 | View | |
36230 | CVE-2014-9578 | VDG Security SENSE (formerly DIVA) 2.3.13 performs authentication with a password hash instead of a password, which allows remote attackers to gain login access by leveraging knowledge of password hash. | 2 | 5 | Medium | 2017-01-19 | 2015-01-08 | View |
Page 641 of 17672, showing 5 records out of 88360 total, starting on record 3201, ending on 3205