NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72115  CVE-2004-1736  Cacti 0.8.5a allows remote attackers to gain sensitive information via an HTTP request to (1) auth.php, (2) auth_login.php, (3) auth_changepassword.php, and possibly other php files, which reveal the installation path in a PHP error message.    Medium  2017-07-18  2017-07-10  View
72114  CVE-2004-1735  Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1.x and earlier allows remote authenticated users to inject arbitrary web script or HTML via the description field.    4.3  Medium  2017-07-18  2017-07-10  View
72113  CVE-2004-1734  PHP remote file inclusion vulnerability in Mantis 0.19.0a allows remote attackers to execute arbitrary PHP code by modifying the (1) t_core_path parameter to bug_api.php or (2) t_core_dir parameter to relationship_api.php to reference a URL on a remote web server that contains the code.    7.5  High  2017-07-18  2017-07-10  View
72112  CVE-2004-1733  Directory traversal vulnerability in MyDMS 1.4.2 and other versions allows remote registered users to read arbitrary files via .. (dot dot) sequences in the URL.    Medium  2017-07-18  2017-07-10  View
72111  CVE-2004-1732  SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers to execute arbitrary SQL commands via the folderid parameter.    7.5  High  2017-07-18  2017-07-10  View

Page 15698 of 17672, showing 5 records out of 88360 total, starting on record 78486, ending on 78490

Actions