NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72071  CVE-2004-1692  Cross-site scripting (XSS) vulnerability in index.php in Mambo 4.5 (1.0.9) allows remote attackers to inject arbitrary web script or HTML via the (1) Itemid, (2) mosmsg, or (3) limit parameters.    4.3  Medium  2017-07-18  2017-07-10  View
72072  CVE-2004-1693  PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code.    7.5  High  2017-07-18  2017-07-10  View
72073  CVE-2004-1694  Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access.    7.5  High  2017-07-18  2017-07-10  View
72074  CVE-2004-1695  EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administration feature via a URL that contains an extra leading / (slash).    10  High  2017-07-18  2017-07-10  View
72075  CVE-2004-1696  EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to cause a denial of service (application crash) via a sequence of carriage returns sent to TCP port 66.    Medium  2017-07-18  2017-07-10  View

Page 1967 of 17672, showing 5 records out of 88360 total, starting on record 9831, ending on 9835

Actions