NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72425 | CVE-2004-2048 | radmin in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier starts a process port 25072 that can be accessed with a default "jstwo" password, which allows remote attackers to gain access. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
72681 | CVE-2004-2304 | Integer overflow in Trillian 0.74 and earlier, and Trillian Pro 2.01 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72937 | CVE-2004-2560 | DokuWiki before 2004-10-19, when used on a web server that permits execution based on file extension, allows remote attackers to execute arbitrary code by uploading a file with an appropriate extension such as .php or .cgi. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
74217 | CVE-2003-1145 | Cross-site scripting (XSS) vulnerability in friendmail.php in OpenAutoClassifieds 1.0 allows remote attackers to inject arbitrary web script or HTML via the listing parameter. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
81641 | CVE-2017-5541 | Directory traversal vulnerability in template/usererror.missing_extension.php in Symphony CMS before 2.6.10 allows remote attackers to rename arbitrary files via a .. (dot dot) in the existing-folder and new-folder parameters. | 2 | 5 | Medium | 2017-02-07 | 2017-01-26 | View |
Page 17273 of 17672, showing 5 records out of 88360 total, starting on record 86361, ending on 86365