NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71931 | CVE-2004-1552 | SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72187 | CVE-2004-1809 | Cross-site scripting (XSS) vulnerability in phpBB 2.0.6d and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) postdays parameter to viewtopic.php or (2) topicdays parameter to viewforum.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72443 | CVE-2004-2066 | SQL injection vulnerability in session.php in LinPHA 0.9.4 allows remote attackers to execute arbitrary SQL code and bypass authentication via the (1) linpha_userid or (2) linpha_password cookies. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72699 | CVE-2004-2322 | SQL injection vulnerability in the (1) announce and (2) notes modules of phpWebSite before 0.9.3-2 allows remote attackers to execute arbitrary SQL queries, as demonstrated using the ANN_id parameter to the announce module. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72955 | CVE-2004-2578 | phpGroupWare before 0.9.16.002 transmits the (1) header admin and (2) setup passwords in plaintext via cookies, which allows remote attackers to sniff passwords. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1198 of 17672, showing 5 records out of 88360 total, starting on record 5986, ending on 5990