NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71693 | CVE-2004-1313 | The Smc.exe process in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before invoking help, which allows local users to gain privileges. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71949 | CVE-2004-1570 | SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72205 | CVE-2004-1827 | Cross-site scripting (XSS) vulnerability in YaBB 1 Gold(SP1.3) and YaBB SE 1.5.1 Final allows remote attackers to inject arbitrary web script via the background:url property in (1) glow or (2) shadow tags. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72461 | CVE-2004-2084 | Cross-site scripting (XSS) vulnerability in search.php in JShop E-Commerce Server allows remote attackers to inject arbitrary web script or HTML via the xSearch parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72717 | CVE-2004-2340 | ** UNVERIFIABLE ** SQL injection vulnerability in PunkBuster Screenshot Database (PB-DB) Alpha 6 allows remote attackers to execute arbitrary SQL commands via the username and password fields of the login form. NOTE: the original vulnerability report contains several significant inconsistencies that make it unclear whether the report is accurate, including (1) PB-DB is really the "PunkBuster Screenshot Database" and not "PunkBuster" itself; (2) there is no apparent association between PunkBuster and "Punky Brewster"; (3) the claimed source code is not anywhere in Alpha 6. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16514 of 17672, showing 5 records out of 88360 total, starting on record 82566, ending on 82570