NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72260  CVE-2004-1882  Cross-site scripting (XSS) vulnerability in popuplargeimage.asp in CactuShop 5.x allows remote attackers to inject arbitrary web script or HTML via the strImageTag parameter.    4.3  Medium  2017-07-18  2017-07-10  View
72516  CVE-2004-2139  Unknown vulnerability in Adminedit.pl YaBB 1 Gold before 1.3.2 allows attackers to execute arbitrary code via settings.pl.    7.5  High  2017-07-18  2017-07-10  View
72772  CVE-2004-2395  Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption) via a large number of failed read attempts from the password buffer.    2.1  Low  2017-07-18  2017-07-10  View
80708  CVE-2002-1757  PHProjekt 2.0 through 3.1 relies on the $PHP_SELF variable for authentication, which allows remote attackers to bypass authentication for scripts via a request to a .php file with sms in the URL, which is included in the PATH_INFO portion of the $PHP_SELF variable, as demonstrated using mail_send.php/sms.    7.5  High  2017-07-18  2017-07-10  View
81476  CVE-2017-3316  Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: GUI). Supported versions that are affected are VirtualBox prior to 5.0.32 and prior to 5.1.14. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise Oracle VM VirtualBox. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS v3.0 Base Score 8.4 (Confidentiality, Integrity and Availability impacts).    Medium  2017-07-18  2017-06-30  View

Page 16672 of 17672, showing 5 records out of 88360 total, starting on record 83356, ending on 83360

Actions