NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65851  CVE-2005-0071  vdr before 1.2.6 does not securely create files, which allows attackers to overwrite arbitrary files.    Medium  2017-07-18  2017-07-10  View
36227  CVE-2014-9575  VDG Security SENSE (formerly DIVA) before 2.3.15 allows remote attackers to bypass authentication, and consequently read and modify arbitrary plugin settings, via an encoded : (colon) character in the Authorization HTTP header.    6.4  Medium  2017-01-19  2015-01-08  View
36231  CVE-2014-9579  VDG Security SENSE (formerly DIVA) 2.3.13 stores administrator credentials in cleartext, which allows attackers to obtain sensitive information by reading the plugin configuration files.    Medium  2017-01-19  2015-01-08  View
36229  CVE-2014-9577  VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain usernames and password hashes by logging in to TCP port 51410 and reading the response.    Medium  2017-01-19  2015-01-08  View
36230  CVE-2014-9578  VDG Security SENSE (formerly DIVA) 2.3.13 performs authentication with a password hash instead of a password, which allows remote attackers to gain login access by leveraging knowledge of password hash.    Medium  2017-01-19  2015-01-08  View

Page 641 of 17672, showing 5 records out of 88360 total, starting on record 3201, ending on 3205

Actions