NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72119 | CVE-2004-1740 | Music daemon (musicd) 0.0.3 and earlier allows remote attackers to read arbitrary files by calling LOAD with a full pathname, then calling SHOWLIST. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 6839 | CVE-2008-7108 | Multiple cross-site scripting (XSS) vulnerabilities in Carmosa phpCart 3.4 through 4.6.4 allow remote attackers to inject arbitrary web script or HTML via the (1) quantity or (2) Add Engraving fields to the default URI; (3) Quantity field to phpcart.php; (4) Name, (5) Company, (6) Address, (7) City, and (8) Province/State fields in a checkout action to phpcart.php; and other unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-01 | View | |
| 72375 | CVE-2004-1998 | The Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to gain sensitive information via an invalid show parameter to modules.php, which reveals the full path in a PHP error message. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
| 72887 | CVE-2004-2510 | Cross-site scripting (XSS) vulnerability in showflat.php in Infopop UBB.Threads before 6.5 allows remote attackers to inject arbitrary web script or HTML via the Cat parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 73143 | CVE-2004-2766 | Webmail in Sun ONE Messaging Server 6.1 and iPlanet Messaging Server 5.2 before 5.2hf2.02 allows remote attackers to obtain unspecified "access" to e-mail via a crafted e-mail message, related to a "session hijacking" issue, a different vulnerability than CVE-2005-2022 and CVE-2006-5486. | 2 | 4.3 | Medium | 2016-12-20 | 2010-01-31 | View |
Page 15094 of 17672, showing 5 records out of 88360 total, starting on record 75466, ending on 75470