NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71396 | CVE-2004-0994 | Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with large width and height values, which trigger a heap-based buffer overflow, as demonstrated in the read_prf_file function in readprf.c. NOTE: CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only partially overlap, despite having the same developer. Therefore, they should be regarded as distinct. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
6116 | CVE-2008-6385 | Cross-site scripting (XSS) vulnerability in index.php in W3matter RevSense 1.0 allows remote attackers to inject arbitrary web script or HTML via the section parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-05-14 | View | |
71652 | CVE-2004-1272 | Buffer overflow in the save_embedded_address function in filter.c for elm/bolthole filter 2.6.1 allows remote attackers to execute arbitrary code via a crafted email message. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
6372 | CVE-2008-6641 | Multiple SQL injection vulnerabilities in Shader TV (Beta) allow remote authenticated administrators to execute arbitrary SQL commands via the sid parameter to (1) kanal.asp, (2) google.asp, and (3) hakk.asp in yonet/; and allow remote attackers to execute arbitrary SQL commands via the (4) username or (5) password fields to yonet/default.asp. | 2 | 6.5 | Medium | 2017-01-03 | 2009-04-07 | View | |
71908 | CVE-2004-1529 | Cross-site scripting (XSS) vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary web script via the (1) type, (2) day, (3) month, or (4) year parameters in a Preview operation, or (5) event comments. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15779 of 17672, showing 5 records out of 88360 total, starting on record 78891, ending on 78895