NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72505  CVE-2004-2128  Cross-site scripting (XSS) vulnerability in BRS WebWeaver 1.07 allows remote attackers to execute arbitrary script as other users via the query string to ISAPISkeleton.dll.    6.8  Medium  2017-07-18  2017-07-10  View
72504  CVE-2004-2127  Directory traversal vulnerability in Web Blog 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the file variable.    Medium  2017-07-18  2017-07-10  View
72503  CVE-2004-2126  The upgrade for BlackICE PC Protection 3.6 and earlier sets insecure permissions for .INI files such as (1) blackice.ini, (2) firewall.ini, (3) protect.ini, or (4) sigs.ini, which allows local users to modify BlackICE configuration or possibly execute arbitrary code by exploiting vulnerabilities in the .INI parsers.    4.6  Medium  2016-12-20  2016-10-17  View
72502  CVE-2004-2125  Buffer overflow in blackd.exe for BlackICE PC Protection 3.6 and other versions before 3.6.ccb, with application protection off, allows local users to gain system privileges by modifying the .INI file to contain a long packetLog.fileprefix value.    4.6  Medium  2017-07-18  2017-07-10  View
72501  CVE-2004-2124  The register_globals simulation capability in Gallery 1.3.1 through 1.4.1 allows remote attackers to modify the HTTP_POST_VARS variable and conduct a PHP remote file inclusion attack via the GALLERY_BASEDIR parameter, a different vulnerability than CVE-2002-1412.    Medium  2017-07-18  2017-07-10  View

Page 15620 of 17672, showing 5 records out of 88360 total, starting on record 78096, ending on 78100

Actions