NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71197  CVE-2004-0771  Buffer overflow in the extract_one function from lhext.c in LHA may allow attackers to execute arbitrary code via a long w (working directory) command line option, a different issue than CVE-2004-0769. NOTE: this issue may be REJECTED if there are not any cases in which LHA is setuid or is otherwise used across security boundaries.    10  High  2017-07-18  2017-07-10  View
71453  CVE-2004-1061  Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.    4.3  Medium  2017-07-18  2017-07-10  View
71709  CVE-2004-1329  Untrusted execution path vulnerability in the diag commands (1) lsmcode, (2) diag_exec, (3) invscout, and (4) invscoutd in AIX 5.1 through 5.3 allows local users to execute arbitrary programs by modifying the DIAGNOSTICS environment variable to point to a malicious Dctrl program.    7.2  High  2017-07-18  2017-07-10  View
72221  CVE-2004-1843  SQL injection vulnerability in Member Management System 2.1 allows remote attackers to execute arbitrary SQL via the ID parameter to (1) resend.asp or (2) news_view.asp.    7.5  High  2017-07-18  2017-07-10  View
72733  CVE-2004-2356  Early termination vulnerability in Fizmez Web Server 1.0 allows remote attackers to cause a denial of service (crash) by connecting to the server and then disconnecting without sending any data, which triggers a null pointer dereference.    Medium  2017-07-18  2017-07-10  View

Page 16460 of 17672, showing 5 records out of 88360 total, starting on record 82296, ending on 82300

Actions