NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71846  CVE-2004-1467  Multiple cross-site scripting (XSS) vulnerabilities in eGroupWare 1.0.00.003 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) date or search text field in the calendar module, (2) Field parameter, Filter parameter, QField parameter, Start parameter or Search field in the address module, (3) Subject field in the message module or (4) Subject field in the Ticket module.    4.3  Medium  2017-07-18  2017-07-10  View
71847  CVE-2004-1468  The web mail functionality in Usermin 1.x and Webmin 1.x allows remote attackers to execute arbitrary commands via shell metacharacters in an e-mail message.    7.5  High  2017-07-18  2017-07-10  View
71848  CVE-2004-1469  Format string vulnerability in the log function in SUS 2.0.2, and other versions before 2.0.6, allows local users to execute arbitrary code via format string specifiers in a command line argument that is passed directly to syslog.    7.2  High  2017-07-18  2017-07-10  View
71849  CVE-2004-1470  CRLF injection vulnerability in SnipSnap 0.5.2a, and other versions before 1.0b1, allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server.    Medium  2017-07-18  2017-07-10  View
71850  CVE-2004-1471  Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commit access to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a wrapper line.    7.1  High  2017-07-18  2017-07-10  View

Page 1922 of 17672, showing 5 records out of 88360 total, starting on record 9606, ending on 9610

Actions