NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71932  CVE-2004-1553  SQL injection vulnerability in aspWebAlbum allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the cat parameter to album.asp. NOTE: it was later reported that vector 1 affects aspWebAlbum 3.2, and the vector involves the txtUserName parameter in a processlogin action to album.asp, as reachable from the login action.    7.5  High  2017-07-18  2017-07-10  View
72188  CVE-2004-1810  The Javascript engine in Opera 7.23 allows remote attackers to cause a denial of service (crash) by creating a new Array object with a large size value, then writing into that array.    Medium  2017-07-18  2017-07-10  View
72444  CVE-2004-2067  SQL injection vulnerability in controlpanel.php in Jaws Framework and Content Management System 0.4 allows remote attackers to execute arbitrary SQL and bypass authentication via the (1) user, (2) password, or (3) crypted_password parameters.    7.5  High  2017-07-18  2017-07-10  View
72700  CVE-2004-2323  DotNetNuke (formerly IBuySpy Workshop) 1.0.6 through 1.0.10d allows remote attackers to obtain sensitive information, including the SQL server username and password, via a GET request for source or configuration files such as Web.config.    Medium  2017-07-18  2017-07-10  View
72956  CVE-2004-2579  ACLCHECK module in Novell iChain 2.3 allows attackers to bypass access control rules of an unspecified component via an unspecified attack vector involving a string that contains escape sequences represented with overlong UTF-8 encoding.    7.5  High  2017-07-18  2017-07-10  View

Page 17410 of 17672, showing 5 records out of 88360 total, starting on record 87046, ending on 87050

Actions