NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72241 | CVE-2004-1863 | Multiple cross-site scripting (XSS) vulnerabilities in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allow remote attackers to inject arbitrary web script or HTML via (1) the u2uheader parameter in editprofile.php, the restrict parameter in (2) member.php, (3) misc.php, and (4) today.php, and (5) an arbitrary parameter in phpinfo.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72242 | CVE-2004-1864 | SQL injection vulnerability in Extreme Messageboard (XMB) 1.9 beta allows remote attackers to execute arbitrary SQL commands via the restrict parameter to (1) member.php, (2) misc.php, or (3) today.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72243 | CVE-2004-1865 | Cross-site scripting (XSS) vulnerability in the administration panel in bBlog 0.7.2 allows remote authenticated users with superuser privileges to inject arbitrary web script or HTML via a blog name ($blogname). NOTE: if administrators are normally allowed to add HTML by other means, e.g. through Smarty templates, then this issue would not give any additional privileges, and thus would not be considered a vulnerability. | 2 | 1.9 | Low | 2017-07-18 | 2017-07-10 | View | |
| 72244 | CVE-2004-1866 | nstxd in Nstx 1.1 beta3 and earlier allows remote attackers to cause a denial of service (crash) via a large packet, which triggers a null dereference. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72245 | CVE-2004-1867 | Cross-site scripting (XSS) vulnerability in guest.cgi in Fresh Guest Book allows remote attackers to inject arbitrary web script or HTML via the Name field. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 2001 of 17672, showing 5 records out of 88360 total, starting on record 10001, ending on 10005