NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67096 | CVE-2005-1357 | text.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
1816 | CVE-2008-1876 | PHP remote file inclusion vulnerability in index.php in VisualPic 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the _CONFIG[files][functions_page] parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
2072 | CVE-2008-2138 | Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read the contents of /dav_portal/portal/ by sending a request containing a trailing "%0A" (encoded line feed), then using the session ID that is generated from that request. NOTE: as of 20080512, Oracle has not commented on the accuracy of this report. | 2 | 5 | Medium | 2017-01-03 | 2009-02-26 | View | |
67608 | CVE-2005-1890 | Unknown vulnerability in Mortiforo before 0.9.1 allows users to access private forums via unknown attack vectors. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
67864 | CVE-2005-2160 | IMail stores usernames and passwords in cleartext in a cookie, which allows remote attackers to obtain sensitive information. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 862 of 17672, showing 5 records out of 88360 total, starting on record 4306, ending on 4310