NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72400 | CVE-2004-2023 | SQL injection vulnerability in login.php in Zen Cart 1.1.2d, 1.1.4 before patch 1, and possibly other versions allows remote attackers to execute arbitrary SQL via the (1) admin_name or (2) admin_pass parameters. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72656 | CVE-2004-2279 | Cross-site scripting (XSS) vulnerability in Invision Power Board 1.3 Final allows remote attackers to execute arbitrary script as other users via the pop parameter in a chat action to index.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72912 | CVE-2004-2535 | The person-to-person secure messaging feature in Sticker before 3.1.0 beta 2 allows remote attackers to post messages to unauthorized private groups by using the group's public encryption key. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
73424 | CVE-2003-0289 | Format string vulnerability in scsiopen.c of the cdrecord program in cdrtools 2.0 allows local users to gain privileges via format string specifiers in the dev parameter. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
73936 | CVE-2003-0838 | Internet Explorer allows remote attackers to bypass zone restrictions to inject and execute arbitrary programs by creating a popup window and inserting ActiveX object code with a data tag pointing to the malicious code, which Internet Explorer treats as HTML or Javascript, but later executes as an HTA application, a different vulnerability than CVE-2003-0532, and as exploited using the QHosts Trojan horse (aka Trojan.Qhosts, QHosts-1, VBS.QHOSTS, or aolfix.exe). | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 17413 of 17672, showing 5 records out of 88360 total, starting on record 87061, ending on 87065