NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72036 | CVE-2004-1657 | Cross-site scripting (XSS) vulnerability in the Activity and Events Viewer for Newtelligence DasBlog allows remote attackers to inject arbitrary web script or HTML via the (1) User Agent or (2) Referrer HTTP headers. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72037 | CVE-2004-1658 | Kerio Personal Firewall 4.0 (KPF4) allows local users with administrative privileges to bypass the Application Security feature and execute arbitrary processes by directly writing to devicephysicalmemory to restore the running kernel's SDT ServiceTable. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72038 | CVE-2004-1659 | Cross-site scripting (XSS) vulnerability in index.php in CuteNews 1.3.6 and earlier allows remote attackers with Administrator, Editor, Journalist or Commenter privileges to inject arbitrary web script or HTML via the mod parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72039 | CVE-2004-1660 | PHP remote file inclusion vulnerability in CuteNews 1.3.6 and earlier allows remote attackers to execute arbitrary PHP code via the cutepath parameter to (1) show_archives.php or (2) show_news.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72040 | CVE-2004-1661 | MailWorks Professional allows remote attackers to bypass authentication and gain privileges via a cookie that contains "auth=1" and "uId=1." | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 1960 of 17672, showing 5 records out of 88360 total, starting on record 9796, ending on 9800