NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70586 | CVE-2004-0122 | Microsoft MSN Messenger 6.0 and 6.1 does not properly handle certain requests, which allows remote attackers to read arbitrary files. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
72378 | CVE-2004-2001 | ifconfig "-arp" in SGI IRIX 6.5 through 6.5.22m does not properly disable ARP requests from being sent or received. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
73146 | CVE-2004-2769 | Cerberus FTP Server before 4.0.3.0 allows remote authenticated users to list hidden files, even when the "Display hidden files" option is enabled, via the (1) MLSD or (2) MLST commands. | 2 | 4 | Medium | 2016-12-20 | 2010-07-06 | View | |
58810 | CVE-2006-0070 | ** DISPUTED ** Drupal allows remote attackers to conduct cross-site scripting (XSS) attacks via an IMG tag with an unusual encoded Javascript function name, as demonstrated using variations of the alert() function. NOTE: a followup by the vendor suggests that the issue does not exist in 4.5.6 or 4.6.4 when "Filtered HTML" is enabled, and since "Full HTML" would not filter HTML by design, perhaps this should not be included in CVE. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
59066 | CVE-2006-0327 | TYPO3 3.7.1 allows remote attackers to obtain sensitive information via a direct request to (1) thumbs.php, (2) showpic.php, or (3) tables.php, which causes them to incorrectly define a variable and reveal the path in an error message when a require function call fails. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1090 of 17672, showing 5 records out of 88360 total, starting on record 5446, ending on 5450