NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72446 | CVE-2004-2069 | sshd.c in OpenSSH 3.6.1p2 and 3.7.1p2 and possibly other versions, when using privilege separation, does not properly signal the non-privileged process when a session has been terminated after exceeding the LoginGraceTime setting, which leaves the connection open and allows remote attackers to cause a denial of service (connection consumption). | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72702 | CVE-2004-2325 | Cross-site scripting (XSS) vulnerability in EditModule.aspx for DotNetNuke (formerly IBuySpy Workshop) 1.0.6 through 1.0.10d allows remote attackers to inject arbitrary web script or HTML. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72958 | CVE-2004-2581 | Novell iChain 2.3 allows attackers to cause a denial of service via a URL with a specific string. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
7934 | CVE-2011-0910 | The cookie implementation in Vanilla Forums before 2.0.17.6 makes it easier for remote attackers to spoof signed requests, and consequently obtain access to arbitrary user accounts, via HMAC timing attacks. | 2 | 6.4 | Medium | 2017-01-07 | 2011-02-14 | View | |
73470 | CVE-2003-0336 | Qualcomm Eudora 5.2.1 allows remote attackers to read arbitrary files via an email message with a carriage return (CR) character in a spoofed "Attachment Converted:" string, which is not properly handled by Eudora. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 17607 of 17672, showing 5 records out of 88360 total, starting on record 88031, ending on 88035