NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72165  CVE-2004-1786  PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb.    Medium  2017-07-18  2017-07-10  View
72421  CVE-2004-2044  PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLite 3.1, and OSC2Nuke 7x do not properly use the eregi() PHP function with $_SERVER['PHP_SELF'] to identify the calling script, which allows remote attackers to directly access scripts, obtain path information via a PHP error message, and possibly gain access, as demonstrated using an HTTP request that contains the "admin.php" string.    7.5  High  2017-07-18  2017-07-10  View
72677  CVE-2004-2300  Buffer overflow in snmpd in ucd-snmp 4.2.6 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -p command line argument. NOTE: it is not clear whether there are any standard configurations in which snmpd is installed setuid or setgid. If not, then this issue should not be included in CVE.    7.2  High  2017-07-18  2017-07-10  View
72933  CVE-2004-2556  NetGear WG602 (aka WG602v1) Wireless Access Point firmware 1.04.0 and 1.5.67 has a hardcoded account of username super and password 5777364, which allows remote attackers to modify the configuration.    Medium  2017-07-18  2017-07-10  View
73189  CVE-2003-0042  Jakarta Tomcat before 3.3.1a, when used with JDK 1.3.1 or earlier, allows remote attackers to list directories even with an index.html or other file present, or obtain unprocessed source code for a JSP file, via a URL containing a null character.    Medium  2017-07-18  2017-07-10  View

Page 17243 of 17672, showing 5 records out of 88360 total, starting on record 86211, ending on 86215

Actions