NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70716 | CVE-2004-0265 | Cross-site scripting (XSS) vulnerability in modules.php for Php-Nuke 6.x-7.1.0 allows remote attackers to execute arbitrary script as other users via URL-encoded (1) title or (2) fname parameters in the News or Reviews modules. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
70717 | CVE-2004-0266 | SQL injection vulnerability in the "public message" capability (public_message) for Php-Nuke 6.x to 7.1.0 allows remote attackers obtain the administrator password via the c_mid parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
70718 | CVE-2004-0267 | The (1) inoregupdate, (2) uniftest, or (3) unimove scripts in eTrust InoculateIT for Linux 6.0 allow local users to overwrite arbitrary files via a symlink attack on files in /tmp. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
70719 | CVE-2004-0268 | Multiple buffer overflows in EvolutionX 3921 and 3935 allow remote attackers to cause a denial of service (hang) via (1) a long cd command to the FTP server, or (2) a long dir command to the telnet server. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
70720 | CVE-2004-0269 | SQL injection vulnerability in PHP-Nuke 6.9 and earlier, and possibly 7.x, allows remote attackers to inject arbitrary SQL code and gain sensitive information via (1) the category variable in the Search module or (2) the admin variable in the Web_Links module. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1696 of 17672, showing 5 records out of 88360 total, starting on record 8476, ending on 8480