NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71421  CVE-2004-1020  The addslashes function in PHP 4.3.9 does not properly escape a NULL (/0) character, which may allow remote attackers to read arbitrary files in PHP applications that contain a directory traversal vulnerability in require or include statements, but are otherwise protected by the magic_quotes_gpc mechanism. NOTE: this issue was originally REJECTed by its CNA before publication, but that decision is in active dispute. This candidate may change significantly in the future as a result of further discussion.    Medium  2017-07-18  2017-07-10  View
71677  CVE-2004-1297  Buffer overflow in the process_font_table function in convert.c for unrtf 0.19.3 allows remote attackers to execute arbitrary code via a crafted RTF file.    10  High  2017-07-18  2017-07-10  View
71933  CVE-2004-1554  PHP remote file inclusion vulnerability in livre_include.php in @lex Guestbook allows remote attackers to execute arbitrary PHP code by modifying the chem_absolu parameter to reference a URL on a remote web server that contains the code.    7.5  High  2017-07-18  2017-07-10  View
72189  CVE-2004-1811  The SSL HTTP Server in HP Web-enabled Management Software 5.0 through 5.92, with anonymous access enabled, allows remote attackers to compromise the trusted certificates by uploading their own certificates.    7.5  High  2017-07-18  2017-07-10  View
72445  CVE-2004-2068  fetchnews in leafnode 1.9.47 and earlier allows remote attackers to cause a denial of service (process hang) via an empty NNTP news article with missing mandatory headers.    Medium  2017-07-18  2017-07-11  View

Page 2180 of 17672, showing 5 records out of 88360 total, starting on record 10896, ending on 10900

Actions