NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72995 | CVE-2004-2618 | Cross-site scripting (XSS) vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to inject arbitrary web script or HTML via the URI, directly after the initial "/" (slash). | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 72994 | CVE-2004-2617 | Directory traversal vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to read files outside of the web root via a .. (dot dot) directly after the initial "/" (slash) in the URI. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 72993 | CVE-2004-2616 | The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information by uploading a file, which reveals the path in a success message. | 2 | 4 | Medium | 2016-12-20 | 2016-10-17 | View | |
| 72992 | CVE-2004-2615 | The documentation for CuteNews 1.3.6 and possibly other versions specifies that files under cutenews/data must be manually given world-writable permissions, which allows local users to insert false news, delete news, and possibly gain privileges or have other unknown impact. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 72991 | CVE-2004-2614 | Buffer overflow in MyWeb 3.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 15522 of 17672, showing 5 records out of 88360 total, starting on record 77606, ending on 77610