NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72132 | CVE-2004-1753 | The Apple Java plugin, as used in Netscape 7.1 and 7.2, Mozilla 1.7.2, and Firefox 0.9.3 on MacOS X 10.3.5, when tabbed browsing is enabled, does not properly handle SetWindow(NULL) calls, which allows Java applets from one tab to draw to other tabs and facilitates phishing attacks that spoof tabs. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
72388 | CVE-2004-2011 | msxml3.dll in Internet Explorer 6.0.2600.0 allows remote attackers to cause a denial of service (crash) via a single & (ampersand) in a <Ref href> link, which triggers a parsing error, possibly due to missing portions of the URI. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
7108 | CVE-2017-5209 | The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data. | 2 | 6.4 | Medium | 2017-01-19 | 2017-01-13 | View | |
72644 | CVE-2004-2267 | Cross-site scripting (XSS) vulnerability in Ansel 2.1 and earlier allows remote attackers to inject arbitrary HTML or web script via the album name. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72900 | CVE-2004-2523 | Format string vulnerability in the msg command (cat_message function in msg.c) in OpenFTPD 0.30.2 and earlier allows remote authenticated users to execute arbitrary code via format string specifiers in the message argument. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16989 of 17672, showing 5 records out of 88360 total, starting on record 84941, ending on 84945