NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72461 | CVE-2004-2084 | Cross-site scripting (XSS) vulnerability in search.php in JShop E-Commerce Server allows remote attackers to inject arbitrary web script or HTML via the xSearch parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72462 | CVE-2004-2085 | Multiple cross-site scripting (XSS) vulnerabilities in Brad Fears phpCodeCabinet 0.4 and earlier allow remote attackers to inject arbitrary web script or HTML via multiple parameters, including (1) the sid parameter to comments.php, (2) the cid, cf, or rfd parameters to category.php, or the cid parameter to (3) input.php, (4) browse.php, (5) themes/facade/header.php, or (6) themes/phpcc/header.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72463 | CVE-2004-2086 | Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP POST request with a long query parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72464 | CVE-2004-2087 | Unknown vulnerability in SandSurfer before 1.7.0 allows remote attackers to gain access as a logged-in user. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72465 | CVE-2004-2088 | Sophos Anti-Virus 3.78 allows remote attackers to bypass virus scanning by using a qmail generated Delivery Status Notification (DSN) where the original email is not included in the bounce message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 2045 of 17672, showing 5 records out of 88360 total, starting on record 10221, ending on 10225