NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72259 | CVE-2004-1881 | SQL injection vulnerability in (1) mailorder.asp or (2) payonline.asp in CactuShop 5.x allows remote attackers to execute arbitrary SQL commands via the strItems parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72515 | CVE-2004-2138 | Cross-site scripting (XSS) vulnerability in AWSguest.php in AllWebScripts MySQLGuest allows remote attackers to inject arbitrary HTML and PHP code via the (1) Name, (2) Email, (3) Homepage or (4) Comments field. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
72771 | CVE-2004-2394 | Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of the search space required for brute force attacks. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
74051 | CVE-2003-0978 | Format string vulnerability in gpgkeys_hkp (experimental HKP interface) for the GnuPG (gpg) client 1.2.3 and earlier, and 1.3.3 and earlier, allows remote attackers or a malicious keyserver to cause a denial of service (crash) and possibly execute arbitrary code during key retrieval. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
78915 | CVE-2001-1481 | Xitami 2.4 through 2.5 b4 stores the Administrator password in plaintext in the default.aut file, whose default permissions are world-readable, which allows remote attackers to gain privileges. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View |
Page 16667 of 17672, showing 5 records out of 88360 total, starting on record 83331, ending on 83335