NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79296 | CVE-2002-0286 | The GetPassword function in function.php of SiteNews 0.10 and 0.11 allows remote attackers to gain privileges and add users by providing a non-existent user name and the MD5 checksum for an empty password to add_user.php, which causes GetPassword to produce and compare a blank password for the non-existent user. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
79297 | CVE-2002-0287 | pforum 1.14 and earlier does not explicitly enable PHP magic quotes, which allows remote attackers to bypass authentication and gain administrator privileges via an SQL injection attack when the PHP server is not configured to use magic quotes by default. | 2 | 10 | High | 2017-01-05 | 2016-10-17 | View | |
79298 | CVE-2002-0288 | Directory traversal vulnerability in Phusion web server 1.0 allows remote attackers to read arbitrary files via a ... (triple dot dot) in the HTTP request. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
79299 | CVE-2002-0289 | Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary code via a long HTTP request. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
79300 | CVE-2002-0290 | Buffer overflow in Netwin WebNews CGI program 1.1, Webnews.exe, allows remote attackers to execute arbitrary code via a long group argument. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View |
Page 926 of 17672, showing 5 records out of 88360 total, starting on record 4626, ending on 4630