NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72225 | CVE-2004-1847 | News Manager Lite 2.5 allows remote attackers to bypass authentication and gain administrator privileges by setting the ADMIN parameter in the NEWS_LOGIN cookie. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72224 | CVE-2004-1846 | Multiple SQL injection vulnerabilities in News Manager Lite 2.5 allow remote attackers to execute arbitrary SQL code via the (1) ID parameter to more.asp, (2) ID parameter to category_news.asp, or (3) filter parameter to news_sort.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72223 | CVE-2004-1845 | Multiple cross-site scripting (XSS) vulnerabilities in News Manager Lite 2.5 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to comment_add.asp, (2) search parameter to search.asp, or (3) n parameter to category_news_headline.asp. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72222 | CVE-2004-1844 | Cross-site scripting (XSS) vulnerability in Member Management System 2.1 allows remote attackers to inject arbitrary web script or HTML via (1) the err parameter to error.asp or (2) register.asp. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72221 | CVE-2004-1843 | SQL injection vulnerability in Member Management System 2.1 allows remote attackers to execute arbitrary SQL via the ID parameter to (1) resend.asp or (2) news_view.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 15676 of 17672, showing 5 records out of 88360 total, starting on record 78376, ending on 78380