NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71878 | CVE-2004-1499 | Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute arbitrary web script or HTML via the Subject field. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72134 | CVE-2004-1755 | The Web Services fat client for BEA WebLogic Server and Express 7.0 SP4 and earlier, when using 2-way SSL and multiple certificates to connect to the same URL, may use the incorrect identity after the first connection, which could allow users to gain privileges. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72390 | CVE-2004-2013 | Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
72646 | CVE-2004-2269 | Stack-based buffer overflow in pads.c in Passive Asset Detection System (Pads) might allow local users to execute arbitrary code via a long report file name argument. NOTE: since Pads is not normally installed setuid, this may not be a vulnerability. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
72902 | CVE-2004-2525 | Cross-site scripting (XSS) vulnerability in compat.php in Serendipity before 0.7.1 allows remote attackers to inject arbitrary web script or HTML via the searchTerm variable. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17358 of 17672, showing 5 records out of 88360 total, starting on record 86786, ending on 86790