NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
74240  CVE-2003-1168  HTTP Commander 4.0 allows remote attackers to obtain sensitive information via an HTTP request that contains a . (dot) in the file parameter, which reveals the installation path in an error message.    Medium  2017-01-03  2008-09-05  View
74239  CVE-2003-1167  misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which allows local users to elevate their privileges by modifying the PATH variable to reference a malicious killall program.    7.2  High  2017-07-18  2017-07-10  View
74238  CVE-2003-1166  Directory traversal vulnerability in (1) Openfile.aspx and (2) Html.aspx in HTTP Commander 4.0 allows remote attackers to view arbitrary files via a .. (dot dot) in the file parameter.    Medium  2017-07-18  2017-07-10  View
74237  CVE-2003-1165  Buffer overflow in BRS WebWeaver 1.06 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP request with a long User-Agent header.    Medium  2017-07-18  2017-07-10  View
74236  CVE-2003-1164  Cross-site scripting (XSS) vulnerability in Mldonkey 2.5-4 allows remote attackers to inject arbitrary web script or HTML via the URI, which is injected into the HTML error page.    4.3  Medium  2017-07-18  2017-07-10  View

Page 16111 of 17672, showing 5 records out of 88360 total, starting on record 80551, ending on 80555

Actions