NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6812 | CVE-2008-7081 | userHandler.cgi in RaidSonic ICY BOX NAS firmware 2.3.2.IB.2.RS.1 allows remote attackers to bypass authentication and gain administrator privileges by setting the login parameter to admin. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 10 | High | 2017-01-03 | 2009-08-26 | View | |
66081 | CVE-2005-0318 | useredit_account.wdm in Alt-N WebAdmin 3.0.4 does not properly validate account edits by the logged in user, which allows remote authenticated users to edit other users" account information via a modified user parameter. | 2 | 2.1 | Low | 2017-01-03 | 2016-10-17 | View | |
69081 | CVE-2005-3420 | usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid parameter, as demonstrated by injecting an "e" modifier into a preg_replace statement. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
63085 | CVE-2006-4450 | usercp_avatar.php in PHPBB 2.0.20, when avatar uploading is enabled, allows remote attackers to use the server as a web proxy by submitting a URL to the avatarurl parameter, which is then used in an HTTP GET request. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
4023 | CVE-2008-4167 | useradmin.php in Easy Photo Gallery (aka Ezphotogallery) 2.1 does not require administrative authentication, which allows remote attackers to (1) add or (2) remove an Administrator account. | 2 | 6.4 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 665 of 17672, showing 5 records out of 88360 total, starting on record 3321, ending on 3325