NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71142 | CVE-2004-0715 | The WebLogic Authentication provider for BEA WebLogic Server and WebLogic Express 8.1 through SP2 and 7.0 through SP4 does not properly clear member relationships when a group is deleted, which can cause a new group with the same name to have the members of the old group, which allows group members to gain privileges. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
71654 | CVE-2004-1274 | The DownloadLoop function in main.c for greed 0.81p allows remote attackers to execute arbitrary code via a GRX file containing a filename with shell metacharacters. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71910 | CVE-2004-1531 | SQL injection vulnerability in post.php in Invision Power Board (IPB) 2.0.0 through 2.0.2 allows remote attackers to execute arbitrary SQL commands via the qpid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72166 | CVE-2004-1787 | SQL injection vulnerability in PostCalendar 4.0.0 allows remote attackers to execute arbitrary SQL commands via search queries. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72422 | CVE-2004-2045 | The HTTP administration interface on Conceptronic CADSLR1 ADSL router running firmware 3.04n allows remote attackers to cause a denial of service (device reboot) via an HTTP request with a long username. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17250 of 17672, showing 5 records out of 88360 total, starting on record 86246, ending on 86250