NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72115 | CVE-2004-1736 | Cacti 0.8.5a allows remote attackers to gain sensitive information via an HTTP request to (1) auth.php, (2) auth_login.php, (3) auth_changepassword.php, and possibly other php files, which reveal the installation path in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72114 | CVE-2004-1735 | Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1.x and earlier allows remote authenticated users to inject arbitrary web script or HTML via the description field. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72113 | CVE-2004-1734 | PHP remote file inclusion vulnerability in Mantis 0.19.0a allows remote attackers to execute arbitrary PHP code by modifying the (1) t_core_path parameter to bug_api.php or (2) t_core_dir parameter to relationship_api.php to reference a URL on a remote web server that contains the code. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72112 | CVE-2004-1733 | Directory traversal vulnerability in MyDMS 1.4.2 and other versions allows remote registered users to read arbitrary files via .. (dot dot) sequences in the URL. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72111 | CVE-2004-1732 | SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers to execute arbitrary SQL commands via the folderid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 15698 of 17672, showing 5 records out of 88360 total, starting on record 78486, ending on 78490