NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71540 | CVE-2004-1150 | Stack-based buffer overflow in the in_cdda.dll plugin for Winamp 5.0 through 5.08c allows attackers to execute arbitrary code via a cda:// URL with a long (1) device name or (2) sound track number, as demonstrated with a .m3u or .pls playlist file. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
71539 | CVE-2004-1149 | Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71538 | CVE-2004-1148 | phpMyAdmin before 2.6.1, when configured with UploadDir functionality, allows remote attackers to read arbitrary files via the sql_localfile parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71537 | CVE-2004-1147 | phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71536 | CVE-2004-1146 | Multiple cross-site scripting (XSS) vulnerabilities in (1) main.c and (2) login.c for CVSTrac before 1.1.5 allow remote attackers to inject arbitrary HTML and web script. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15813 of 17672, showing 5 records out of 88360 total, starting on record 79061, ending on 79065