NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72220 | CVE-2004-1842 | Cross-site request forgery (CSRF) vulnerability in Php-Nuke 6.x through 7.1.0 allows remote attackers to gain administrative privileges via an img tag with a URL to admin.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72219 | CVE-2004-1841 | SQL injection vulnerability in MS Analysis module 2.0 for PHP-Nuke allows remote attackers to execute arbitrary SQL via the referer field in an HTTP request. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72218 | CVE-2004-1840 | Multiple cross-site scripting (XSS) vulnerabilities in MS Analysis module 2.0 for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via the (1) screen parameter to modules.php, (2) module_name parameter to title.php, (3) sortby parameter to modules.php, or (4) overview parameter to modules.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72217 | CVE-2004-1839 | MS Analysis module 2.0 for PHP-Nuke allows remote attackers to obtain sensitive information via a direct request to (1) browsers.php, (2) mstrack.php, or (3) title.php, which reveal the full path in a PHP error message. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
| 72216 | CVE-2004-1838 | Directory traversal vulnerability in xweb 1.0 allows remote attackers to download arbitrary files via a .. (dot dot) in the URL. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15677 of 17672, showing 5 records out of 88360 total, starting on record 78381, ending on 78385