NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71950 | CVE-2004-1571 | AJ-Fork 167 allows remote attackers to gain sensitive information via a direct request to (1) auto-acronyms.php, (2) auto-archive.php, (3) ount-article-views.php, (4) kses.php, (5) custom-quick-tags.php, (6) disable-all-comments.php, (7) easy-date-format.php, (8) enable-disable-comments.php, (9) filter-by-author.php, (10) format-switcher.php, (11) long-to-short.php, (12) prospective-posting.php, or (13) sort-by-xfield.php, which displays the full path in an error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71949 | CVE-2004-1570 | SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71948 | CVE-2004-1569 | Buffer overflow in (1) MusicConverter.exe, (2) playlist.exe, and (3) amp.exe in dBpowerAMP Audio Player 2.0 and dbPowerAmp Music Converter 10.0 allows remote attackers to cause a denial of service or execute arbitrary code via a .pls or .m3u playlist that contains long File1 (filename) fields. | 2 | 4 | Medium | 2017-07-18 | 2017-07-10 | View | |
71947 | CVE-2004-1568 | Directory traversal vulnerability in ParaChat Server 5.5 allows remote attackers to read arbitrary files via a ..%5C (hex-encoded dot dot) in the URL. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71946 | CVE-2004-1567 | profile.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to gain privileges by setting the mail parameter to 1, which is the value for an administrator. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 15731 of 17672, showing 5 records out of 88360 total, starting on record 78651, ending on 78655