NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71157 | CVE-2004-0730 | Multiple cross-site scripting (XSS) vulnerabilities in PhpBB 2.0.8 allow remote attackers to inject arbitrary web script or HTML via (1) the cat_title parameter in index.php, (2) the faq[0][0] parameter in lang_faq.php as accessible from faq.php, or (3) the faq[0][0] parameter in lang_bbcode.php as accessible from faq.php. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71413 | CVE-2004-1012 | The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a different command ("body.peek") and causes an index increment error that leads to an out-of-bounds memory corruption. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71669 | CVE-2004-1289 | Multiple buffer overflows in (1) the getline function in pcalutil.c and (2) the get_holiday function in readfile.c for pcal 4.7.1 allow remote attackers to execute arbitrary code via a crafted calendar file. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71925 | CVE-2004-1546 | Multiple buffer overflows in MDaemon 6.5.1 allow remote attackers to cause a denial of service (application crash) via a long (1) SAML, SOML, SEND, or MAIL command to the SMTP server or (2) LIST command to the IMAP server. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72181 | CVE-2004-1802 | Chat Anywhere 2.72 and earlier allows remote attackers to hide their IP address by using %00 before the nickname, which causes the IP address to be displayed as $IP$ on the administration web page. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17613 of 17672, showing 5 records out of 88360 total, starting on record 88061, ending on 88065