NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72429  CVE-2004-2052  eSeSIX Thintune thin clients running firmware 2.4.38 and earlier accept any password that begins with the actual password, which makes it easier for users to conduct brute force password guessing.    7.5  High  2016-12-20  2016-10-17  View
7149  CVE-2011-0010  check.c in sudo 1.7.x before 1.7.4p5, when a Runas group is configured, does not require a password for command execution that involves a gid change but no uid change, which allows local users to bypass an intended authentication requirement via the -g option to a sudo command.    4.4  Medium  2017-01-07  2011-08-26  View
72685  CVE-2004-2308  Cross-site scripting (XSS) vulnerability in cPanel 9.1.0 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the dir parameter in dohtaccess.html.    4.3  Medium  2017-07-18  2017-07-10  View
7405  CVE-2011-0284  Double free vulnerability in the prepare_error_as function in do_as_req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 through 1.9, when the PKINIT feature is enabled, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via an e_data field containing typed data.    7.6  High  2017-01-07  2014-02-11  View
72941  CVE-2004-2564  Multiple cross-site scripting (XSS) vulnerabilities in Sambar Server 6.1 Beta 2 on Windows, and possibly other versions on Linux, allow remote attackers to inject arbitrary web script or HTML via (1) the show parameter in show.asp and (2) the title parameter in showperf.asp.    4.3  Medium  2017-07-18  2017-07-10  View

Page 16392 of 17672, showing 5 records out of 88360 total, starting on record 81956, ending on 81960

Actions