NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70567 | CVE-2004-0103 | crawl before 4.0.0 beta23 does not properly "apply a size check" when copying a certain environment variable, which may allow local users to gain privileges, possibly as a result of a buffer overflow. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
70823 | CVE-2004-0372 | xine allows local users to overwrite arbitrary files via a symlink attack on a bug report email that is generated by the (1) xine-bugreport or (2) xine-check scripts. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
71079 | CVE-2004-0652 | BEA WebLogic Server and WebLogic Express 7.0 through 7.0 Service Pack 4, and 8.1 through 8.1 Service Pack 2, allows attackers to obtain the username and password for booting the server by directly accessing certain internal methods. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71335 | CVE-2004-0933 | Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-Antivirus 6.1 through 6.3 allow remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71591 | CVE-2004-1202 | Cross-site scripting (XSS) vulnerability in parser.php in phpCMS 1.2.1 and earlier, with non-stealth and debug modes enabled, allows remote attackers to inject arbitrary web script or HTML via the file parameter. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17085 of 17672, showing 5 records out of 88360 total, starting on record 85421, ending on 85425