NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72067 | CVE-2004-1688 | Pigeon Server 3.02.0143 and earlier allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a long login name sent to port 3103. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72323 | CVE-2004-1946 | Format string vulnerability in the PRINT_ERROR function in common.c for Cherokee Web Server 0.4.16 and earlier allows local users to execute arbitrary code via format string specifiers in the -C command line argument. NOTE: it is not clear whether this issue could be exploited remotely, or if Cherokee is running at escalated privileges. Therefore it might not be a vulnerability. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
72579 | CVE-2004-2202 | Multiple SQL injection vulnerabilities in DUware DUclassified 4.0 through 4.2 allows remote attackers to bypass authentication and execute other commands on the server's underlying database via the (1) cat_id or (2) sub_id parameters in adDetail.asp, or (2) the password parameter in the login form. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72835 | CVE-2004-2458 | Open WebMail 2.30 and earlier, when use_syshomedir is disabled or create_syshomedir is enabled, creates new directories before authenticating, which allows remote attackers to create arbitrary directories. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74115 | CVE-2003-1043 | SQL injection vulnerability in Bugzilla 2.16.3 and earlier, and 2.17.1 through 2.17.4, allows remote authenticated users with editkeywords privileges to execute arbitrary SQL via the id parameter to editkeywords.cgi. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View |
Page 17001 of 17672, showing 5 records out of 88360 total, starting on record 85001, ending on 85005