NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72259  CVE-2004-1881  SQL injection vulnerability in (1) mailorder.asp or (2) payonline.asp in CactuShop 5.x allows remote attackers to execute arbitrary SQL commands via the strItems parameter.    7.5  High  2017-07-18  2017-07-10  View
72515  CVE-2004-2138  Cross-site scripting (XSS) vulnerability in AWSguest.php in AllWebScripts MySQLGuest allows remote attackers to inject arbitrary HTML and PHP code via the (1) Name, (2) Email, (3) Homepage or (4) Comments field.    6.8  Medium  2017-07-18  2017-07-10  View
72771  CVE-2004-2394  Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of the search space required for brute force attacks.    2.1  Low  2017-07-18  2017-07-10  View
74051  CVE-2003-0978  Format string vulnerability in gpgkeys_hkp (experimental HKP interface) for the GnuPG (gpg) client 1.2.3 and earlier, and 1.3.3 and earlier, allows remote attackers or a malicious keyserver to cause a denial of service (crash) and possibly execute arbitrary code during key retrieval.    7.5  High  2017-07-18  2017-07-10  View
78915  CVE-2001-1481  Xitami 2.4 through 2.5 b4 stores the Administrator password in plaintext in the default.aut file, whose default permissions are world-readable, which allows remote attackers to gain privileges.    10  High  2017-07-18  2017-07-10  View

Page 16667 of 17672, showing 5 records out of 88360 total, starting on record 83331, ending on 83335

Actions