NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72366 | CVE-2004-1989 | PHP remote file inclusion vulnerability in theme.php in Coppermine Photo Gallery 1.2.2b allows remote attackers to execute arbitrary PHP code by modifying the THEME_DIR parameter to reference a URL on a remote web server that contains user_list_info_box.inc. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72367 | CVE-2004-1990 | Aldo's Web Server (aweb) 1.5 allows remote attackers to gain sensitive information via an arbitrary character, which reveals the full path and the user running the aweb process, possibly due to a malformed request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72368 | CVE-2004-1991 | Directory traversal vulnerability in Aldo's Web Server (aweb) 1.5 allows remote attackers to view arbitrary files via a .. (dot dot) in an HTTP GET request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72369 | CVE-2004-1992 | Buffer overflow in Serv-U FTP server before 5.0.0.6 allows remote attackers to cause a denial of service (crash) via a long -l parameter, which triggers an out-of-bounds read. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72370 | CVE-2004-1993 | The patch to the checklogin function in omail.pl for omail webmail 0.98.5 is incomplete, which allows remote attackers to execute arbitrary commands via shell metacharacters such as "`" (backticks) in the password. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View |
Page 2026 of 17672, showing 5 records out of 88360 total, starting on record 10126, ending on 10130