NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72815  CVE-2004-2438  Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 allows remote attackers to inject arbitrary web script or HTML via the (1) Submit News, (2) Submit Link or (3) Submit Article field.    4.3  Medium  2017-07-18  2017-07-10  View
72814  CVE-2004-2437  SQL injection vulnerability in PHP-Fusion 4.01 allows remote attackers to execute arbitrary SQL commands via the rowstart parameter to (1) index.php or (2) members.php, or (3) the comment_id parameter to comments.php.    7.5  High  2017-07-18  2017-07-10  View
72813  CVE-2004-2436  Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndAddNspTmp.bat file, which could allow local users to gain privileges.    2.1  Low  2017-07-18  2017-07-10  View
72812  CVE-2004-2435  Cross-site scripting (XSS) vulnerability in PeopleSoft Human Resources Management System (HRMS) 7.0, when "web enabled" using HTML Access, allows remote attackers to inject arbitrary web script or HTML via unspecified (1) debugging or (2) utility scripts.    4.3  Medium  2017-07-18  2017-07-10  View
72811  CVE-2004-2434  Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with "::{" (colon colon left brace), which triggers a null dereference when the user attempts to save the link using "Save As" and Internet Explorer prepares an error message with an attacker-controlled format string.    Medium  2017-07-18  2017-07-10  View

Page 15558 of 17672, showing 5 records out of 88360 total, starting on record 77786, ending on 77790

Actions