NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72671 | CVE-2004-2294 | Canonicalize-before-filter error in the send_review function in the Reviews module for PHP-Nuke 6.0 to 7.3 allows remote attackers to inject arbitrary web script or HTML via hex-encoded XSS sequences in the text parameter, which is checked for dangerous sequences before it is canonicalized, leading to a cross-site scripting (XSS) vulnerability. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
72927 | CVE-2004-2550 | Multiple cross-site scripting (XSS) vulnerabilities in unspecified Perl scripts in SandSurfer before 1.7.1 allow remote attackers to inject arbitrary web script or HTML, which is later executed by a target who views reports containing the injected data. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
73183 | CVE-2003-0036 | ml85p, as included in the printer-drivers package for Mandrake Linux, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable filenames of the form "mlg85p%d". | 2 | 6.2 | Medium | 2017-01-03 | 2008-09-10 | View | |
7903 | CVE-2011-0875 | Unspecified vulnerability in the EMCTL component in Oracle Database Server 11.1.0.7 and Oracle Enterprise Manager Grid Control 10.1.0.6, 10.2.0.5, and 11.1.0.1 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. | 2 | 5.5 | Medium | 2017-01-07 | 2011-10-04 | View | |
73951 | CVE-2003-0853 | An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd. | 2 | 5 | Medium | 2017-01-03 | 2008-09-10 | View |
Page 16504 of 17672, showing 5 records out of 88360 total, starting on record 82516, ending on 82520