NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67096  CVE-2005-1357  text.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.    Medium  2017-01-03  2016-10-17  View
1816  CVE-2008-1876  PHP remote file inclusion vulnerability in index.php in VisualPic 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the _CONFIG[files][functions_page] parameter.    6.8  Medium  2017-01-03  2011-03-07  View
2072  CVE-2008-2138  Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read the contents of /dav_portal/portal/ by sending a request containing a trailing "%0A" (encoded line feed), then using the session ID that is generated from that request. NOTE: as of 20080512, Oracle has not commented on the accuracy of this report.    Medium  2017-01-03  2009-02-26  View
67608  CVE-2005-1890  Unknown vulnerability in Mortiforo before 0.9.1 allows users to access private forums via unknown attack vectors.    Medium  2017-01-03  2008-09-05  View
67864  CVE-2005-2160  IMail stores usernames and passwords in cleartext in a cookie, which allows remote attackers to obtain sensitive information.    Medium  2017-01-03  2016-10-17  View

Page 862 of 17672, showing 5 records out of 88360 total, starting on record 4306, ending on 4310

Actions