NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71945 | CVE-2004-1566 | Cross-site scripting (XSS) vulnerability in index.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to execute arbitrary web script or HTML via the module parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
71944 | CVE-2004-1565 | list.php in w-Agora 4.1.6a allows remote attackers to reveal the full path via a crafted HTTP request, possibly involving a malformed id parameter. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
71943 | CVE-2004-1564 | CRLF injection vulnerability in subscribe_thread.php in w-Agora 4.1.6a allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the thread parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71942 | CVE-2004-1563 | Multiple cross-site scripting (XSS) vulnerabilities in w-Agora 4.1.6a allow remote attackers to execute arbitrary web script or HTML via the (1) thread parameter to download_thread.php, (2) loginuser parameter to login.php, or (3) userid parameter to forgot_password.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
71941 | CVE-2004-1562 | SQL injection vulnerability in redir_url.php in w-Agora 4.1.6a allows remote attackers to execute arbitrary SQL commands via the key parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 15732 of 17672, showing 5 records out of 88360 total, starting on record 78656, ending on 78660