NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68970 | CVE-2005-3308 | Multiple cross-site scripting (XSS) vulnerabilities in Zomplog 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) comment parameter in detail.php, (3) the username parameter in get.php, and (4) the search parameter in index.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
69226 | CVE-2005-3566 | Buffer overflow in various ha commands of VERITAS Cluster Server for UNIX before 4.0MP2 allows local users to execute arbitrary code via a long VCSI18N_LANG environment variable to (1) haagent, (2) haalert, (3) haattr, (4) hacli, (5) hacli_runcmd, (6) haclus, (7) haconf, (8) hadebug, (9) hagrp, (10) hahb, (11) halog, (12) hareg, (13) hares, (14) hastatus, (15) hasys, (16) hatype, (17) hauser, and (18) tststew. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70506 | CVE-2004-0037 | FirstClass Desktop Client 7.1 allows remote attackers to execute arbitrary commands via hyperlinks in FirstClass RTF messages. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70762 | CVE-2004-0311 | American Power Conversion (APC) Web/SNMP Management SmartSlot Card 3.0 through 3.0.3 and 3.21 are shipped with a default password of TENmanUFactOryPOWER, which allows remote attackers to gain unauthorized access. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71018 | CVE-2004-0591 | Cross-site scripting (XSS) vulnerability in the print_header_uc function for SqWebMail 4.0.4 and earlier, and possibly 3.x, allows remote attackers to inject arbitrary web script or HRML via (1) e-mail headers or (2) a message with a "message/delivery-status" MIME Content-Type. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16871 of 17672, showing 5 records out of 88360 total, starting on record 84351, ending on 84355