NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78956 | CVE-2001-1525 | Directory traversal vulnerability in the comments action in easyNews 1.5 and earlier allows remote attackers to modify news.dat, template.dat and possibly other files via a ".." in the cid parameter. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78957 | CVE-2001-1526 | Cross-site scripting (XSS) vulnerability in the comments action in index.php in easyNews 1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the zeit parameter. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View | |
78958 | CVE-2001-1527 | easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and gain access. | 2 | 2.1 | Low | 2017-01-05 | 2009-04-03 | View | |
78959 | CVE-2001-1528 | AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are provided, which allows remote attackers to determine the existence of valid account numbers via a brute force attack. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78960 | CVE-2001-1529 | Buffer overflow in rpc.yppasswdd (yppasswd server) in AIX allows attackers to gain unauthorized access via a long string. NOTE: due to lack of details in the vendor advisory, it is not clear if this is the same issue as CVE-2001-0779. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View |
Page 858 of 17672, showing 5 records out of 88360 total, starting on record 4286, ending on 4290