NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58390 | CVE-2007-6395 | Flat PHP Board 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain credentials via a direct request for the username php file for any user account in users/. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
58646 | CVE-2007-6651 | Directory traversal vulnerability in wiki/edit.php in Bitweaver R2 CMS allows remote attackers to obtain sensitive information (script source code) via a .. (dot dot) in the suck_url parameter. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
59158 | CVE-2006-0420 | BEA WebLogic Server and WebLogic Express 8.1 through SP4 and 7.0 through SP6 does not properly handle when servlets use relative forwarding, which allows remote attackers to cause a denial of service (slowdown) via unknown attack vectors that cause "looping stack overflow errors." | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59414 | CVE-2006-0683 | Cross-site scripting (XSS) vulnerability in Virtual Hosting Control System (VHCS) 2.4.7.1 with v.1 patch and earlier allows remote attackers to inject arbitrary web script or HTML via the username, which is recorded in a log file but not properly handled when the administrator uses the admin log utility to read the log file. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60182 | CVE-2006-1473 | Integer overflow in AFP Server for Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via unknown vectors. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 824 of 17672, showing 5 records out of 88360 total, starting on record 4116, ending on 4120