NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 71267 | CVE-2004-0844 | Internet Explorer 6 on Double Byte Character Set (DBCS) systems allows remote attackers to alter displayed address bars and spoof web pages via a URL containing special characters, facilitating phishing attacks, aka the "Address Bar Spoofing on Double Byte Character Set Systems Vulnerability." | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 71523 | CVE-2004-1133 | Multiple cross-site scripting (XSS) vulnerabilities in Microsoft W3Who ISAPI (w3who.dll) allow remote attackers to inject arbitrary HTML and web script via (1) HTTP headers such as "Connection" or (2) invalid parameters whose values are echoed in the resulting error message. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 71779 | CVE-2004-1400 | The control panel in ASP Calendar does not require authentication to access, which allows remote attackers to gain unauthorized access via a direct request to main.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72035 | CVE-2004-1656 | CRLF injection vulnerability in Comersus Shopping Cart 5.0991 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the redirecturl parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72291 | CVE-2004-1913 | Cross-site scripting (XSS) vulnerability in modules.php in NukeCalendar 1.1.a, as used in PHP-Nuke, allows remote attackers to inject arbitrary web script or HTML via the eid parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16259 of 17672, showing 5 records out of 88360 total, starting on record 81291, ending on 81295