NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71700 | CVE-2004-1320 | Asante FM2008 running firmware 1.06 is shipped with a default username and password, which could allow remote attackers to gain unauthorized access. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71699 | CVE-2004-1319 | The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by setting a name for a window, opening a child page whose target is the window with the given name, then injecting the script from the parent into the child using execScript, as demonstrated by "AbusiveParent" in Internet Explorer 6.0.2900.2180. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71698 | CVE-2004-1318 | Cross-site scripting (XSS) vulnerability in namazu.cgi for Namazu 2.0.13 and earlier allows remote attackers to inject arbitrary HTML and web script via a query that starts with a tab ("%09") character, which prevents the rest of the query from being properly sanitized. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
71697 | CVE-2004-1317 | Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attackers to execute arbitrary code via a long DNS command. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71696 | CVE-2004-1316 | Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and earlier allows remote attackers to cause a denial of service (application crash) via an NNTP URL (news:) with a trailing '' (backslash) character, which prevents a string from being NULL terminated. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15781 of 17672, showing 5 records out of 88360 total, starting on record 78901, ending on 78905