NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71810  CVE-2004-1431  FormMail.php 5.0, and possibly other versions, allows remote attackers to read arbitrary files via a full pathname in the ar_file (auto-reply) parameter.    Medium  2017-07-18  2017-07-10  View
71809  CVE-2004-1430  SQL injection vulnerability in the show_stats module in Arcade.php in IbProArcade allows remote attackers to execute arbitrary SQL code via the gameid parameter.    7.5  High  2017-07-18  2017-07-10  View
71808  CVE-2004-1429  ArGoSoft FTP 1.4.2.4 and earlier does not limit the number of times that a bad password can be entered, which makes it easier for remote attackers to guess passwords via a brute force attack.    7.5  High  2017-07-18  2017-07-10  View
71807  CVE-2004-1428  ArGoSoft FTP before 1.4.2.1 generates an error message if the user name does not exist instead of prompting for a password, which allows remote attackers to determine valid usernames.    Medium  2017-07-18  2017-07-10  View
71806  CVE-2004-1427  PHP remote file inclusion vulnerability in main.inc in KorWeblog 1.6.2-cvs and earlier allows remote attackers to execute arbitrary PHP code by modifying the G_PATH parameter to reference a URL on a remote web server that contains the code, as demonstrated in index.php when using .. (dot dot) sequences in the lng parameter to cause main.inc to be loaded.    7.5  High  2017-07-18  2017-07-10  View

Page 15759 of 17672, showing 5 records out of 88360 total, starting on record 78791, ending on 78795

Actions