NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71864 | CVE-2004-1485 | Buffer overflow in the TFTP client in InetUtils 1.4.2 allows remote malicious DNS servers to execute arbitrary code via a large DNS response that is handled by the gethostbyname function. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72120 | CVE-2004-1741 | Music daemon (musicd) 0.0.3 and earlier allows remote attackers to cause a denial of service (crash) by calling LOAD with a binary file as an argument, then calling SHOWLIST. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72376 | CVE-2004-1999 | Cross-site scripting (XSS) vulnerability in the Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to inject arbitrary HTML and web script via the (1) ttitle or (2) sid parameters to modules.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72632 | CVE-2004-2255 | Directory traversal vulnerability in phpMyFAQ 1.3.12 allows remote attackers to read arbitrary files, and possibly execute local PHP files, via the action variable, which is used as part of a template filename. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View | |
72888 | CVE-2004-2511 | Multiple cross-site scripting (XSS) vulnerabilities in DCP-Portal 5.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the year, (2) month, and (3) day parameters in calendar.php; (4) the cid and (5) url parameters in index.php; (6) the cid parameter in annoucement.php; (7) the cid parameter in news.php; (8) the cid parameter in contents.php; (9) the q parameter in search.php; and (10) the country parameter in register.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17153 of 17672, showing 5 records out of 88360 total, starting on record 85761, ending on 85765