NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72780 | CVE-2004-2403 | Cross-site request forgery (CSRF) vulnerability in YaBB 1 GOLD SP 1.3.2 allows remote attackers to perform unauthorized actions as the administrative user via a link or IMG tag to YaBB.pl that specifies the desired action, id, and moda parameters. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
| 72779 | CVE-2004-2402 | Cross-site scripting (XSS) vulnerability in YaBB.pl in YaBB 1 GOLD SP 1.3.2 allows remote attackers to inject arbitrary web script or HTML via a hex-encoded to parameter. NOTE: some sources say that the board parameter is affected, but this is incorrect. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72778 | CVE-2004-2401 | Stack-based buffer overflow in Ipswitch IMail Express Web Messaging before 8.05 might allow remote attackers to execute arbitrary code via an HTML message with long "tag text." | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72777 | CVE-2004-2400 | WinFTP Server 1.6 stores username and password credentials in plaintext in the datauser.wfd file, which allows local users to gain access to the credentials. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
| 72776 | CVE-2004-2399 | Secure Computing Corporation Sidewinder G2 6.1.0.01 allows remote attackers to cause a denial of service (CPU consumption) via delayed responses to DNS queries. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 15565 of 17672, showing 5 records out of 88360 total, starting on record 77821, ending on 77825