NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66780 | CVE-2005-1031 | RUNCMS 1.1A, and possibly other products based on e-Xoops (exoops), when "Allow custom avatar upload" is enabled, does not properly verify uploaded files, which allows remote attackers to upload arbitrary files. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67804 | CVE-2005-2095 | options_identities.php in SquirrelMail 1.4.4 and earlier uses the extract function to process the $_POST variable, which allows remote attackers to modify or read the preferences of other users, conduct cross-site scripting XSS) attacks, and write arbitrary files. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70620 | CVE-2004-0163 | Sygate Secure Enterprise (SSE) 3.5MR3 and earlier does not change the key used to encrypt data, which allows remote attackers to cause a denial of service (resource exhaustion) by capturing a session and repeatedly replaying the session. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
70876 | CVE-2004-0429 | Unknown vulnerability related to "the handling of large requests" in RAdmin for Apple Mac OS X 10.3.3 and Mac OS X 10.2.8 may allow attackers to have unknown impact via unknown attack vectors. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71132 | CVE-2004-0705 | Multiple cross-site scripting (XSS) vulnerabilities in (1) editcomponents.cgi, (2) editgroups.cgi, (3) editmilestones.cgi, (4) editproducts.cgi, (5) editusers.cgi, and (6) editversions.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allow remote attackers to execute arbitrary JavaScript as other users via a URL parameter. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1089 of 17672, showing 5 records out of 88360 total, starting on record 5441, ending on 5445