NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70591 | CVE-2004-0127 | Directory traversal vulnerability in editconfig_gedcom.php for phpGedView 2.65.1 and earlier allows remote attackers to read arbitrary files or execute arbitrary PHP programs on the server via .. (dot dot) sequences in the gedcom_config parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70847 | CVE-2004-0399 | Stack-based buffer overflow in Exim 3.35, and other versions before 4, when the sender_verify option is true, allows remote attackers to cause a denial of service and possibly execute arbitrary code during sender verification. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71103 | CVE-2004-0676 | Directory traversal vulnerability in Fastream NETFile FTP/Web Server 6.7.2.1085 and earlier allows remote attackers to create or delete arbitrary files via .. (dot dot) and // (double slash) sequences in the filename parameter. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71359 | CVE-2004-0957 | Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71615 | CVE-2004-1226 | SugarCRM Sugar Sales 2.0.1c and earlier allows remote attackers to gain sensitive information via certain requests to scripts that contain invalid input, which reveals the path in an error message, as demonstrated using phprint.php with an empty module parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1698 of 17672, showing 5 records out of 88360 total, starting on record 8486, ending on 8490