NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72058 | CVE-2004-1679 | Directory traversal vulnerability in TwinFTP 1.0.3 R2 allows remote attackers create arbitrary files via a .../ (triple dot) in the (1) CWD, (2) STOR, or (3) RETR commands. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72314 | CVE-2004-1937 | Multiple directory traversal vulnerabilities in Nuked-KlaN 1.4b and 1.5b allow remote attackers to read or include arbitrary files via .. sequences in (1) the user_langue parameter to index.php or (2) the langue parameter to update.php, or modify arbitrary GLOBAL variables by causing globals.php to be loaded before conf.inc.php via (3) .. sequences in the file parameter with the page parameter set to globals, or (4) ../globals.php in the user_langue parameter, as demonstrated by modifying $nuked[prefix] in the Suggest module. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72570 | CVE-2004-2193 | Cross-site scripting (XSS) vulnerability in trade.php for CJOverkill 4.0.3 allows remote attackers to inject arbitrary web script or HTML via the (1) tms[0] or (2) url parameters. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72826 | CVE-2004-2449 | Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier allows remote attackers to cause a denial of service (application crash) via a long, malformed UDP datagram. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74106 | CVE-2003-1034 | The RPM installation of SAP DB 7.x creates the (1) dbmsrv or (2) lserver programs with world-writable permissions, which allows local users to gain privileges by modifying those programs. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16954 of 17672, showing 5 records out of 88360 total, starting on record 84766, ending on 84770