NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72437 | CVE-2004-2060 | ASPRunner 2.4 stores the database under the web root in the db directory, which may allow remote attackers to obtain the database via a direct request to the database filename, which is predictable based on table and field names. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72693 | CVE-2004-2316 | Mbedthis AppWeb HTTP server before 1.0.2 allows remote attackers to cause a denial of service (crash) via a GET request containing an MS-DOS device name such as COM1. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72949 | CVE-2004-2572 | AMAX Magic Winmail Server 3.6 allows remote attackers to obtain sensitive information by entering (1) invalid characters such as () or (2) a large number of characters in the Lookup field on the netaddressbook.php web form, which reveals the path in an ldaplib.php error message when the ldap_search function fails, due to improper processing of the $keyword variable. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
73461 | CVE-2003-0327 | Sybase Adaptive Server Enterprise (ASE) 12.5 allows remote attackers to cause a denial of service (hang) via a remote password array with an invalid length, which triggers a heap-based buffer overflow. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74229 | CVE-2003-1157 | Cross-site scripting (XSS) vulnerability in login.asp in Citrix MetaFrame XP Server 1.0 allows remote attackers to inject arbitrary web script or HTML via the NFuse_Message parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17614 of 17672, showing 5 records out of 88360 total, starting on record 88066, ending on 88070