NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70535 | CVE-2004-0067 | Multiple cross-site scripting (XSS) vulnerabilities in phpGedView before 2.65 allow remote attackers to inject arbitrary HTML or web script via (1) descendancy.php, (2) index.php, (3) individual.php, (4) login.php, (5) relationship.php, (6) source.php, (7) imageview.php, (8) calendar.php, (9) gedrecord.php, (10) login.php, and (11) gdbi_interface.php. NOTE: some aspects of vector 10 were later reported to affect 4.1. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70791 | CVE-2004-0340 | Stack-based buffer overflow in WFTPD Pro Server 3.21 Release 1, Pro Server 3.20 Release 2, Server 3.21 Release 1, and Server 3.10 allows local users to execute arbitrary code via long (1) LIST, (2) NLST, or (3) STAT commands. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71047 | CVE-2004-0620 | Cross-site scripting (XSS) vulnerability in (1) newreply.php or (2) newthread.php in vBulletin 3.0.1 allows remote attackers to inject arbitrary HTML or script as other users via the Edit-panel. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
71303 | CVE-2004-0900 | The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition does not properly validate the length of certain messages, which allows remote attackers to execute arbitrary code via a malformed DHCP message, aka the "DHCP Request Vulnerability." | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71559 | CVE-2004-1169 | MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to cause a denial of service (application crash) via an HTTP GET request for a file that does not exist, followed by two carriage returns, which causes a NULL dereference. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16510 of 17672, showing 5 records out of 88360 total, starting on record 82546, ending on 82550