NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71453  CVE-2004-1061  Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.    4.3  Medium  2017-07-18  2017-07-10  View
6173  CVE-2008-6442  Insecure method vulnerability in Sina Inc. DLoader Class ActiveX Control allows remote attackers to overwrite arbitrary files via a URL in the first parameter to the DonwloadAndInstall method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    5.8  Medium  2017-01-03  2009-03-10  View
71709  CVE-2004-1329  Untrusted execution path vulnerability in the diag commands (1) lsmcode, (2) diag_exec, (3) invscout, and (4) invscoutd in AIX 5.1 through 5.3 allows local users to execute arbitrary programs by modifying the DIAGNOSTICS environment variable to point to a malicious Dctrl program.    7.2  High  2017-07-18  2017-07-10  View
6429  CVE-2008-6698  Cross-site scripting (XSS) vulnerability in TARGET-E WorldCup Bets (worldcup) 2.0.0 and earlier extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.    4.3  Medium  2017-01-03  2009-08-15  View
71965  CVE-2004-1586  Flash Messaging clients can ignore disconnecting commands such as "shutdown" from the Flash Messaging Server 5.2.0g (rev 1.1.2), which could allow remote attackers to stay connected.    2.1  Low  2016-12-20  2016-10-17  View

Page 1978 of 17672, showing 5 records out of 88360 total, starting on record 9886, ending on 9890

Actions