NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72071 | CVE-2004-1692 | Cross-site scripting (XSS) vulnerability in index.php in Mambo 4.5 (1.0.9) allows remote attackers to inject arbitrary web script or HTML via the (1) Itemid, (2) mosmsg, or (3) limit parameters. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72072 | CVE-2004-1693 | PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72073 | CVE-2004-1694 | Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72074 | CVE-2004-1695 | EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administration feature via a URL that contains an extra leading / (slash). | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
| 72075 | CVE-2004-1696 | EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to cause a denial of service (application crash) via a sequence of carriage returns sent to TCP port 66. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1967 of 17672, showing 5 records out of 88360 total, starting on record 9831, ending on 9835