NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54939 | CVE-2007-2775 | AlstraSoft Live Support 1.21 sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to obtain administrative access via a direct request to admin/managesettings.php. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
54940 | CVE-2007-2776 | AlstraSoft Template Seller Pro 3.25 and earlier sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to inject a credential variable setting and obtain administrative access via a direct request to admin/changeinfo.php. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
56218 | CVE-2007-4087 | AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a " (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
65361 | CVE-2006-6818 | AlstraSoft Web Host Directory allows remote attackers to bypass authentication and change the admin password via a direct request to admin/config. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65360 | CVE-2006-6817 | AlstraSoft Web Host Directory allows remote attackers to obtain sensitive information by requesting any invalid URI, which reveals the path in an error message, a different vulnerability than CVE-2006-2617. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 933 of 17672, showing 5 records out of 88360 total, starting on record 4661, ending on 4665