NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71653 | CVE-2004-1273 | Buffer overflow in the DownloadLoop function in main.c for greed 0.81p allows remote attackers to execute arbitrary code via a GRX file containing a long filename. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71909 | CVE-2004-1530 | SQL injection vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the (1) eid or (2) cid parameters. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72165 | CVE-2004-1786 | PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72421 | CVE-2004-2044 | PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLite 3.1, and OSC2Nuke 7x do not properly use the eregi() PHP function with $_SERVER['PHP_SELF'] to identify the calling script, which allows remote attackers to directly access scripts, obtain path information via a PHP error message, and possibly gain access, as demonstrated using an HTTP request that contains the "admin.php" string. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72677 | CVE-2004-2300 | Buffer overflow in snmpd in ucd-snmp 4.2.6 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -p command line argument. NOTE: it is not clear whether there are any standard configurations in which snmpd is installed setuid or setgid. If not, then this issue should not be included in CVE. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View |
Page 17331 of 17672, showing 5 records out of 88360 total, starting on record 86651, ending on 86655