NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71135 | CVE-2004-0708 | MoinMoin 1.2.1 and earlier allows remote attackers to gain privileges by creating a user with the same name as an existing group that has higher privileges. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71134 | CVE-2004-0707 | SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71133 | CVE-2004-0706 | Bugzilla 2.17.5 through 2.17.7 embeds the password in an image URL, which could allow local users to view the password in the web server log files. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
71132 | CVE-2004-0705 | Multiple cross-site scripting (XSS) vulnerabilities in (1) editcomponents.cgi, (2) editgroups.cgi, (3) editmilestones.cgi, (4) editproducts.cgi, (5) editusers.cgi, and (6) editversions.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allow remote attackers to execute arbitrary JavaScript as other users via a URL parameter. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71131 | CVE-2004-0704 | Unknown vulnerability in (1) duplicates.cgi and (2) buglist.cgi in Bugzilla 2.16.x before 2.16.6, 2.18 before 2.18rc1, when configured to hide products, allows remote attackers to view hidden products. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15894 of 17672, showing 5 records out of 88360 total, starting on record 79466, ending on 79470