NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68615 | CVE-2005-2951 | Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via ".." sequences and "%00" (trailing null byte) characters in the l parameter, which is used in an include_once statement. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
3335 | CVE-2008-3454 | JnSHosts PHP Hosting Directory 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the "adm" cookie value to 1. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
68871 | CVE-2005-3209 | Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database access to obtain those passwords and gain privileges. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
3591 | CVE-2008-3726 | Cross-site scripting (XSS) vulnerability in Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to inject arbitrary web script or HTML via the URI. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
69127 | CVE-2005-3466 | Unspecified vulnerability in Enterprise CRM Sales in Oracle 8.81 up to 8.9 has unknown impact and attack vectors, as identified by Oracle Vuln# CRM01. | 2 | 10 | High | 2017-01-03 | 2012-10-22 | View |
Page 832 of 17672, showing 5 records out of 88360 total, starting on record 4156, ending on 4160