NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71090 | CVE-2004-0663 | Cross-site scripting (XSS) vulnerability in modules.php in PowerPortal 1.x allows remote attackers to inject arbitrary script or HTML via the (1) id parameter to the (a) private_messages module; (2) search parameter to the (b) links and (c) content modules; and (3) files parameter to the gallery module. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71089 | CVE-2004-0662 | PowerPortal 1.x allows remote attackers to gain sensitive information via invalid or missing parameters in HTTP requests to (1) resize.php or (2) modules.php, which reveals the path in an error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71088 | CVE-2004-0661 | Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote attackers to cause a denial of service (IP lease depletion) via a DHCP request with the LEASETIME option set to -1, which makes the DHCP lease valid for thirteen or more years. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71087 | CVE-2004-0660 | Cross-site scripting (XSS) vulnerability in (1) show_archives.php, (2) show_news.php, and possibly other php files in CuteNews 1.3.1 allows remote attackers to inject arbitrary script or HTML via the id parameter. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71086 | CVE-2004-0659 | Buffer overflow in TranslateFilename for common.c in MPlayer 1.0pre4 allows remote attackers to execute arbitrary code via a long file name. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View |
Page 15903 of 17672, showing 5 records out of 88360 total, starting on record 79511, ending on 79515