NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
73081  CVE-2004-2704  Hastymail 1.0.1 and earlier (stable) and 1.1 and earlier (development) does not send the "attachment" parameter in the Content-Disposition field for attachments, which causes the attachment to be rendered inline by Internet Explorer when the victim clicks the download link, which facilitates cross-site scripting (XSS) and possibly other attacks.    4.3  Medium  2016-12-20  2008-09-05  View
73082  CVE-2004-2705  Unspecified vulnerability in Player vs. Player Gaming Network (PvPGN) before 1.6.4 allows remote attackers to obtain attributes of arbitrary accounts, including the password hash, via certain statsreq packets.    Medium  2016-12-20  2008-09-05  View
73083  CVE-2004-2706  Unspecified vulnerability in Gyach Enhanced (Gyach-E) before 1.0.4 allows remote attackers to cause a denial of service (crash) via conference packets with error messages.    Medium  2016-12-20  2008-09-05  View
73084  CVE-2004-2707  Multiple unspecified vulnerabilities in Gyach Enhanced (Gyach-E) before 1.0.5 have unknown impact and attack vectors related to "several security flaws," probably related to buffer overflows in HTTP server responses.    7.5  High  2016-12-20  2008-09-05  View
73085  CVE-2004-2708  Gyach Enhanced (Gyach-E) before 1.0.0 stores passwords in plaintext, which allows attackers to obtain user passwords by reading the configuration file.    Medium  2016-12-20  2008-09-05  View

Page 2169 of 17672, showing 5 records out of 88360 total, starting on record 10841, ending on 10845

Actions