NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
74240 | CVE-2003-1168 | HTTP Commander 4.0 allows remote attackers to obtain sensitive information via an HTTP request that contains a . (dot) in the file parameter, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
74239 | CVE-2003-1167 | misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which allows local users to elevate their privileges by modifying the PATH variable to reference a malicious killall program. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
74238 | CVE-2003-1166 | Directory traversal vulnerability in (1) Openfile.aspx and (2) Html.aspx in HTTP Commander 4.0 allows remote attackers to view arbitrary files via a .. (dot dot) in the file parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74237 | CVE-2003-1165 | Buffer overflow in BRS WebWeaver 1.06 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP request with a long User-Agent header. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74236 | CVE-2003-1164 | Cross-site scripting (XSS) vulnerability in Mldonkey 2.5-4 allows remote attackers to inject arbitrary web script or HTML via the URI, which is injected into the HTML error page. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16111 of 17672, showing 5 records out of 88360 total, starting on record 80551, ending on 80555