NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71696 | CVE-2004-1316 | Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and earlier allows remote attackers to cause a denial of service (application crash) via an NNTP URL (news:) with a trailing '' (backslash) character, which prevents a string from being NULL terminated. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71697 | CVE-2004-1317 | Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attackers to execute arbitrary code via a long DNS command. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71698 | CVE-2004-1318 | Cross-site scripting (XSS) vulnerability in namazu.cgi for Namazu 2.0.13 and earlier allows remote attackers to inject arbitrary HTML and web script via a query that starts with a tab ("%09") character, which prevents the rest of the query from being properly sanitized. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
71699 | CVE-2004-1319 | The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by setting a name for a window, opening a child page whose target is the window with the given name, then injecting the script from the parent into the child using execScript, as demonstrated by "AbusiveParent" in Internet Explorer 6.0.2900.2180. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71700 | CVE-2004-1320 | Asante FM2008 running firmware 1.06 is shipped with a default username and password, which could allow remote attackers to gain unauthorized access. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 1892 of 17672, showing 5 records out of 88360 total, starting on record 9456, ending on 9460