NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72245 | CVE-2004-1867 | Cross-site scripting (XSS) vulnerability in guest.cgi in Fresh Guest Book allows remote attackers to inject arbitrary web script or HTML via the Name field. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
6965 | CVE-2008-7234 | Unspecified vulnerability in the Oracle BPEL Worklist Application component in Oracle Application Server 10.1.2.2 and 10.1.3.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, aka AS03. | 2 | 6.8 | Medium | 2017-01-03 | 2012-10-22 | View | |
72501 | CVE-2004-2124 | The register_globals simulation capability in Gallery 1.3.1 through 1.4.1 allows remote attackers to modify the HTTP_POST_VARS variable and conduct a PHP remote file inclusion attack via the GALLERY_BASEDIR parameter, a different vulnerability than CVE-2002-1412. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72757 | CVE-2004-2380 | Directory traversal vulnerability in postfile.exe for Twilight Utilities Web Server 2.0.0.0 allows remote attackers to write arbitrary files via a .. (dot dot) in the attfile parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
73013 | CVE-2004-2636 | TinyWeb 1.9 allows remote attackers to read source code of scripts via "/./" in the URL. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1907 of 17672, showing 5 records out of 88360 total, starting on record 9531, ending on 9535