NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70775 | CVE-2004-0324 | Confirm 0.62 and earlier could allow remote attackers to execute arbitrary code via an e-mail header that contains shell metacharacters such as ", `, |, ;, or $. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70774 | CVE-2004-0323 | Multiple SQL injection vulnerabilities in XMB 1.8 Final SP2 allow remote attackers to inject arbitrary SQL and gain privileges via the (1) ppp parameter in viewthread.php, (2) desc parameter in misc.php, (3) tpp parameter in forumdisplay.php, (4) ascdesc parameter in forumdisplay.php, or (5) the addon parameter in stats.php. NOTE: it has also been shown that item (3) is also in XMB 1.9 beta. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70773 | CVE-2004-0322 | Multiple cross-site scripting (XSS) vulnerabilities in XMB 1.8 Final SP2 allow remote attackers to execute arbitrary script as other users via the (1) member parameter in member.php, (2) uid parameter in u2uadmin.php, (3) user parameter in editprofile.php, (4) an onmouseover event in an align tag when bbcode is allowed, or (5) img tag where bbcode is allowed. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70772 | CVE-2004-0321 | Team Factor 1.25 and earlier allows remote attackers to cause a denial of service (crash) via a packet that uses a negative number to specify the size of the data block that follows, which causes Team Factor to read unallocated memory. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
70771 | CVE-2004-0320 | Unknown vulnerability in nCipher Hardware Security Modules (HSM) 1.67.x through 1.99.x allows local users to access secrets stored in the module"s run-time memory via certain sequences of commands. | 2 | 2.1 | Low | 2016-12-20 | 2016-10-17 | View |
Page 15966 of 17672, showing 5 records out of 88360 total, starting on record 79826, ending on 79830