NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
73097  CVE-2004-2720  Cross-site scripting (XSS) vulnerability in register.asp in Snitz Forums 2000 3.4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via javascript events in the Email parameter.    4.3  Medium  2016-12-20  2008-09-05  View
74377  CVE-2003-1307  ** DISPUTED ** The mod_php module for the Apache HTTP Server allows local users with write access to PHP scripts to send signals to the server"s process group and use the server"s file descriptors, as demonstrated by sending a STOP signal, then intercepting incoming connections on the server"s TCP port. NOTE: the PHP developer has disputed this vulnerability, saying "The opened file descriptors are opened by Apache. It is the job of Apache to protect them ... Not a bug in PHP."    4.3  Medium  2017-01-03  2008-09-05  View
75145  CVE-1999-0477  The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via openfile.cfm, which does not restrict access to the server properly.    7.5  High  2017-01-05  2008-09-05  View
77193  CVE-2000-0959  glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.    1.2  Low  2017-01-05  2008-09-05  View
77705  CVE-2001-0227  Buffer overflow in BiblioWeb web server 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP GET request.    Medium  2017-01-05  2008-09-05  View

Page 16893 of 17672, showing 5 records out of 88360 total, starting on record 84461, ending on 84465

Actions