NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72425  CVE-2004-2048  radmin in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier starts a process port 25072 that can be accessed with a default "jstwo" password, which allows remote attackers to gain access.    10  High  2017-07-18  2017-07-10  View
72681  CVE-2004-2304  Integer overflow in Trillian 0.74 and earlier, and Trillian Pro 2.01 and earlier, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.    7.5  High  2017-07-18  2017-07-10  View
72937  CVE-2004-2560  DokuWiki before 2004-10-19, when used on a web server that permits execution based on file extension, allows remote attackers to execute arbitrary code by uploading a file with an appropriate extension such as .php or .cgi.    7.5  High  2017-07-18  2017-07-10  View
74217  CVE-2003-1145  Cross-site scripting (XSS) vulnerability in friendmail.php in OpenAutoClassifieds 1.0 allows remote attackers to inject arbitrary web script or HTML via the listing parameter.    6.8  Medium  2017-07-18  2017-07-10  View
81641  CVE-2017-5541  Directory traversal vulnerability in template/usererror.missing_extension.php in Symphony CMS before 2.6.10 allows remote attackers to rename arbitrary files via a .. (dot dot) in the existing-folder and new-folder parameters.    Medium  2017-02-07  2017-01-26  View

Page 17273 of 17672, showing 5 records out of 88360 total, starting on record 86361, ending on 86365

Actions