NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71983  CVE-2004-1604  cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private directory, which is created when Front Page extensions are enabled.    Medium  2016-12-20  2016-10-17  View
72239  CVE-2004-1861  Invision NetSupport School Pro uses a weak encryption algorithm to encrypt passwords, which allows local users to obtain passwords.    4.6  Medium  2017-07-18  2017-07-10  View
72495  CVE-2004-2118  Tiny Server 1.1 allows remote attackers to cause a denial of service (crash) via a GET request with a long filename, possibly due to a buffer overflow.    Medium  2017-07-18  2017-07-10  View
72751  CVE-2004-2374  BadBlue 2.4 allows remote attackers to obtain the location of the server installation path via a request for phptest.php, which includes the pathname in the source of the resulting HTML.    Medium  2017-07-18  2017-07-10  View
7471  CVE-2011-0398  The Piwik_Common::getIP function in Piwik before 1.1 does not properly determine the client IP address, which allows remote attackers to bypass intended geolocation and logging functionality via (1) use of a private (aka RFC 1918) address behind a proxy server or (2) spoofing of the X-Forwarded-For HTTP header.    6.4  Medium  2017-01-07  2011-01-19  View

Page 1698 of 17672, showing 5 records out of 88360 total, starting on record 8486, ending on 8490

Actions