NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72985  CVE-2004-2608  SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the unencrypted username and password of the administrator"s account.    Medium  2016-12-20  2010-05-29  View
72984  CVE-2004-2607  A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users to read portions of kernel memory via a large len argument, which is received as an int but cast to a short, which prevents a read loop from filling a buffer.    2.1  Low  2016-12-20  2010-04-02  View
72983  CVE-2004-2606  The Web interface in Linksys WRT54G 2.02.7 and BEFSR41 version 3, with the firewall disabled, allows remote attackers to attempt to login to an administration web page, even when the configuration specifies that remote administration is disabled.    7.5  High  2017-07-18  2017-07-10  View
72982  CVE-2004-2605  aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Generation file and (2) certain PNG image files.    2.1  Low  2017-07-18  2017-07-10  View
72981  CVE-2004-2604  Cross-site scripting (XSS) vulnerability in index.php in PHProxy allows remote attackers to inject arbitrary web script or HTML via the error parameter.    4.3  Medium  2017-07-18  2017-07-10  View

Page 15524 of 17672, showing 5 records out of 88360 total, starting on record 77616, ending on 77620

Actions