NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72631  CVE-2004-2254  SurgeLDAP 1.0g (Build 12), and possibly other versions before 1.0h, allows remote attackers to bypass authentication for the administration interface via a direct request to admin.cgi with a modified utoken parameter.    7.5  High  2017-07-18  2017-07-10  View
72632  CVE-2004-2255  Directory traversal vulnerability in phpMyFAQ 1.3.12 allows remote attackers to read arbitrary files, and possibly execute local PHP files, via the action variable, which is used as part of a template filename.    6.4  Medium  2017-07-18  2017-07-10  View
72633  CVE-2004-2256  Directory traversal vulnerability in phpMyFAQ 1.4.0 alpha allows remote attackers to read arbitrary files, and possibly execute local PHP files, via .. sequences in the lang (language) variable.    Medium  2017-07-18  2017-07-10  View
72634  CVE-2004-2257  phpMyFAQ 1.4.0 allows remote attackers to access the Image Manager to upload or delete images without authorization via a direct request.    Medium  2017-07-18  2017-07-10  View
72635  CVE-2004-2258  Xconfig in Hummingbird Exceed before 9.0.0.1, when the Screen Definition is password-protected, allows local users to access certain options by switching to another tab, then switching back to the original tab.    2.1  Low  2017-07-18  2017-07-10  View

Page 2079 of 17672, showing 5 records out of 88360 total, starting on record 10391, ending on 10395

Actions