NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70865 | CVE-2004-0418 | serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote attackers to perform an "out-of-bounds" write for a single byte to execute arbitrary code or modify critical program data. | 2 | 10 | High | 2016-12-20 | 2016-10-17 | View | |
71121 | CVE-2004-0694 | Buffer overflow in LHA 1.14 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to "command line processing," a different vulnerability than CVE-2004-0771. NOTE: this issue may be REJECTED if there are not any cases in which LHA is setuid or is otherwise used across security boundaries. | 2 | 6.8 | Medium | 2016-12-20 | 2011-07-18 | View | |
72401 | CVE-2004-2024 | The distribution of Zen Cart 1.1.4 before patch 2 includes certain debugging code in the Admin password retrieval functionality, which allows attackers to gain administrative privileges via password_forgotten.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
72657 | CVE-2004-2280 | Buffer overflow in IBM Lotus Notes 6.5.x before 6.5.3 and 6.0.x before 6.0.5 allows remote attackers to cause a denial of service (crash) via unknown vectors related to Java applets, as identified by KSPR62F4KN. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
58833 | CVE-2006-0093 | Cross-site scripting (XSS) vulnerability in index.php in @Card ME PHP allows remote attackers to inject arbitrary web script or HTML via the cat parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17397 of 17672, showing 5 records out of 88360 total, starting on record 86981, ending on 86985