NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72103  CVE-2004-1724  The ReadMe First.txt file in PHP-Fusion 4.0 instructs users to set the permissions on the fusion_admin/db_backups directory to world read/write/execute (777), which allows remote attackers to download or view database backups, which have easily guessable filenames and contain the administrator username and password.    7.5  High  2017-07-18  2017-07-10  View
72359  CVE-2004-1982  Post.pl in YaBB 1 Gold SP 1.2 allows remote attackers to modify records in the board's .txt file via carriage return characters in the subject field.    Medium  2017-07-18  2017-07-10  View
7079  CVE-2017-2942  Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability when processing TIFF image data. Successful exploitation could lead to arbitrary code execution.    9.3  High  2017-01-19  2017-01-17  View
72615  CVE-2004-2238  ** DISPUTED ** Format string vulnerability in vsybase.c in vpopmail 5.4.2 and earlier has unknown impact and attack vectors. NOTE: in a followup post, it was observed that the source code used constants that, when compiled, became static format strings. Thus this is not a vulnerability.    Medium  2017-07-18  2017-07-10  View
72871  CVE-2004-2494  Cross-site scripting (XSS) vulnerability in _error in Ability Mail Server 1.18 allows remote attackers to inject arbitrary web script or HTML via the erromsg parameter.    4.3  Medium  2017-07-18  2017-07-10  View

Page 16763 of 17672, showing 5 records out of 88360 total, starting on record 83811, ending on 83815

Actions