NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72995  CVE-2004-2618  Cross-site scripting (XSS) vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to inject arbitrary web script or HTML via the URI, directly after the initial "/" (slash).    4.3  Medium  2016-12-20  2008-09-05  View
72994  CVE-2004-2617  Directory traversal vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to read files outside of the web root via a .. (dot dot) directly after the initial "/" (slash) in the URI.    Medium  2016-12-20  2008-09-05  View
72993  CVE-2004-2616  The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information by uploading a file, which reveals the path in a success message.    Medium  2016-12-20  2016-10-17  View
72992  CVE-2004-2615  The documentation for CuteNews 1.3.6 and possibly other versions specifies that files under cutenews/data must be manually given world-writable permissions, which allows local users to insert false news, delete news, and possibly gain privileges or have other unknown impact.    4.6  Medium  2016-12-20  2008-09-05  View
72991  CVE-2004-2614  Buffer overflow in MyWeb 3.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request.    7.5  High  2016-12-20  2011-03-07  View

Page 15522 of 17672, showing 5 records out of 88360 total, starting on record 77606, ending on 77610

Actions