NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71878  CVE-2004-1499  Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute arbitrary web script or HTML via the Subject field.    4.3  Medium  2017-07-18  2017-07-10  View
72134  CVE-2004-1755  The Web Services fat client for BEA WebLogic Server and Express 7.0 SP4 and earlier, when using 2-way SSL and multiple certificates to connect to the same URL, may use the incorrect identity after the first connection, which could allow users to gain privileges.    7.5  High  2017-07-18  2017-07-10  View
72390  CVE-2004-2013  Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.    7.2  High  2017-07-18  2017-07-10  View
72646  CVE-2004-2269  Stack-based buffer overflow in pads.c in Passive Asset Detection System (Pads) might allow local users to execute arbitrary code via a long report file name argument. NOTE: since Pads is not normally installed setuid, this may not be a vulnerability.    7.2  High  2017-07-18  2017-07-10  View
72902  CVE-2004-2525  Cross-site scripting (XSS) vulnerability in compat.php in Serendipity before 0.7.1 allows remote attackers to inject arbitrary web script or HTML via the searchTerm variable.    4.3  Medium  2017-07-18  2017-07-10  View

Page 17358 of 17672, showing 5 records out of 88360 total, starting on record 86786, ending on 86790

Actions