NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5710  CVE-2008-5979  Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Mailing List Manager Gold allows remote attackers to inject arbitrary web script or HTML via the Email parameter.    4.3  Medium  2017-01-03  2009-05-14  View
6478  CVE-2008-6747  dotProject before 2.1.2 does not properly restrict access to administrative pages, which allows remote attackers to gain privileges. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-03  2009-04-23  View
72014  CVE-2004-1635  Bugzilla 2.17.1 through 2.18rc2 and 2.19 from cvs, when using the insidergroup feature, does not sufficiently protect private attachments when there are changes to the metadata, such as filename, description, MIME type, or review flags, which allows remote authenticated users to obtain sensitive information when (1) viewing the bug activity log or (2) receiving bug change notification mails.    Medium  2017-07-18  2017-07-10  View
72526  CVE-2004-2149  Buffer overflow in the prepared statements API in libmysqlclient for MySQL 4.1.3 beta and 4.1.4 allows remote attackers to cause a denial of service via a large number of placeholders.    Medium  2017-07-18  2017-07-10  View
72782  CVE-2004-2405  Buffer overflow in multiple F-Secure Anti-Virus products, including F-Secure Anti-Virus 5.42 and earlier, allows remote attackers to bypass scanning or cause a denial of service (crash or module restart), depending on the product, via a malformed LHA archive.    6.4  Medium  2017-07-18  2017-07-10  View

Page 2799 of 17672, showing 5 records out of 88360 total, starting on record 13991, ending on 13995

Actions