NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71536 | CVE-2004-1146 | Multiple cross-site scripting (XSS) vulnerabilities in (1) main.c and (2) login.c for CVSTrac before 1.1.5 allow remote attackers to inject arbitrary HTML and web script. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
71537 | CVE-2004-1147 | phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71538 | CVE-2004-1148 | phpMyAdmin before 2.6.1, when configured with UploadDir functionality, allows remote attackers to read arbitrary files via the sql_localfile parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71539 | CVE-2004-1149 | Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71540 | CVE-2004-1150 | Stack-based buffer overflow in the in_cdda.dll plugin for Winamp 5.0 through 5.08c allows attackers to execute arbitrary code via a cda:// URL with a long (1) device name or (2) sound track number, as demonstrated with a .m3u or .pls playlist file. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1860 of 17672, showing 5 records out of 88360 total, starting on record 9296, ending on 9300