NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71066  CVE-2004-0639  Multiple cross-site scripting (XSS) vulnerabilities in Squirrelmail 1.2.10 and earlier allow remote attackers to inject arbitrary HTML or script via (1) the $mailer variable in read_body.php, (2) the $senderNames_part variable in mailbox_display.php, and possibly other vectors including (3) the $event_title variable or (4) the $event_text variable.    6.8  Medium  2017-07-18  2017-07-10  View
71322  CVE-2004-0920  Symantec Norton AntiVirus 2004, and earlier versions, allows a virus or other malicious code to avoid detection or cause a denial of service (application crash) using a filename containing an MS-DOS device name.    Medium  2017-07-18  2017-07-10  View
71578  CVE-2004-1189  The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an array index out-of-bounds error and may allow authenticated users to execute arbitrary code via a heap-based buffer overflow.    7.2  High  2017-07-18  2017-07-10  View
71834  CVE-2004-1455  Stack-based buffer overflow in Xine-lib-rc5 in xine-lib 1_rc5-r2 and earlier allows remote attackers to execute arbitrary code via crafted playlists that result in a long vcd:// URL.    5.1  Medium  2017-07-18  2017-07-10  View
72090  CVE-2004-1711  Cross-site scripting (XSS) vulnerability in post.php in Moodle before 1.3 allows remote attackers to inject arbitrary web script or HTML via the reply parameter.    4.3  Medium  2017-07-18  2017-07-10  View

Page 1412 of 17672, showing 5 records out of 88360 total, starting on record 7056, ending on 7060

Actions