NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
79586  CVE-2002-0581  WorkforceROI Xpede 4.1 allows remote attackers to execute arbitrary SQL commands and read, modify, or steal credentials from the database via the Qry parameter in the sprc.asp script.    7.5  High  2017-01-05  2008-09-05  View
79587  CVE-2002-0582  WorkforceROI Xpede 4.1 stores temporary expense claim reports in a world-readable and indexable /reports/temp directory, which allows remote attackers to read the reports by accessing the directory.    Medium  2017-01-05  2008-09-05  View
79588  CVE-2002-0583  WorkforceROI Xpede 4.1 uses a small random namespace (5 alphanumeric characters) for temporary expense claim reports in the /reports/temp directory, which allows remote attackers to read the reports via a brute force attack.    Medium  2017-01-05  2008-09-05  View
79589  CVE-2002-0584  WorkforceROI Xpede 4.1 allows remote attackers to read user timesheets by modifying the TSN ID parameter to the ts_app_process.asp script, which is easily guessable because it is incremented by 1 for each new timesheet.    Medium  2017-01-05  2008-09-05  View
79590  CVE-2002-0585  Unknown vulnerability in ndd for HP-UX 11.11 with certain TRANSPORT patches allows attackers to cause a denial of service.    Medium  2017-01-05  2009-03-04  View

Page 984 of 17672, showing 5 records out of 88360 total, starting on record 4916, ending on 4920

Actions