NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72245  CVE-2004-1867  Cross-site scripting (XSS) vulnerability in guest.cgi in Fresh Guest Book allows remote attackers to inject arbitrary web script or HTML via the Name field.    4.3  Medium  2017-07-18  2017-07-10  View
6965  CVE-2008-7234  Unspecified vulnerability in the Oracle BPEL Worklist Application component in Oracle Application Server 10.1.2.2 and 10.1.3.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, aka AS03.    6.8  Medium  2017-01-03  2012-10-22  View
72501  CVE-2004-2124  The register_globals simulation capability in Gallery 1.3.1 through 1.4.1 allows remote attackers to modify the HTTP_POST_VARS variable and conduct a PHP remote file inclusion attack via the GALLERY_BASEDIR parameter, a different vulnerability than CVE-2002-1412.    Medium  2017-07-18  2017-07-10  View
72757  CVE-2004-2380  Directory traversal vulnerability in postfile.exe for Twilight Utilities Web Server 2.0.0.0 allows remote attackers to write arbitrary files via a .. (dot dot) in the attfile parameter.    Medium  2017-07-18  2017-07-10  View
73013  CVE-2004-2636  TinyWeb 1.9 allows remote attackers to read source code of scripts via "/./" in the URL.    Medium  2016-12-20  2008-09-05  View

Page 1907 of 17672, showing 5 records out of 88360 total, starting on record 9531, ending on 9535

Actions