NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72103 | CVE-2004-1724 | The ReadMe First.txt file in PHP-Fusion 4.0 instructs users to set the permissions on the fusion_admin/db_backups directory to world read/write/execute (777), which allows remote attackers to download or view database backups, which have easily guessable filenames and contain the administrator username and password. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72359 | CVE-2004-1982 | Post.pl in YaBB 1 Gold SP 1.2 allows remote attackers to modify records in the board's .txt file via carriage return characters in the subject field. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
7079 | CVE-2017-2942 | Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability when processing TIFF image data. Successful exploitation could lead to arbitrary code execution. | 2 | 9.3 | High | 2017-01-19 | 2017-01-17 | View | |
72615 | CVE-2004-2238 | ** DISPUTED ** Format string vulnerability in vsybase.c in vpopmail 5.4.2 and earlier has unknown impact and attack vectors. NOTE: in a followup post, it was observed that the source code used constants that, when compiled, became static format strings. Thus this is not a vulnerability. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72871 | CVE-2004-2494 | Cross-site scripting (XSS) vulnerability in _error in Ability Mail Server 1.18 allows remote attackers to inject arbitrary web script or HTML via the erromsg parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16763 of 17672, showing 5 records out of 88360 total, starting on record 83811, ending on 83815