NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69191 | CVE-2005-3530 | Cross-site scripting (XSS) vulnerability in Antville 1.1 allows remote attackers to inject arbitrary web script or HTML via the notfound.skin error document. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70983 | CVE-2004-0552 | Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71239 | CVE-2004-0815 | The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71495 | CVE-2004-1103 | MailPost 5.1.1sv, and possibly earlier versions, when debug mode is enabled, allows remote attackers to gain sensitive information via the debug parameter, which reveals information such as the path to the web root and the web server version. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71751 | CVE-2004-1372 | Multiple stack-based buffer overflows in IBM DB2 7.x and 8.1 allow local users to execute arbitrary code via (1) a long third argument to the rec2xml function or (2) a long filename argument to the generate_distfile procedure. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View |
Page 16049 of 17672, showing 5 records out of 88360 total, starting on record 80241, ending on 80245