NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72206 | CVE-2004-1828 | Vcard 2.9 and possibly other versions does not require authorization to run uninstall.php, which could allow remote attackers to uninstall Vcard and delete database tables via a direct request to uninstall.php. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72462 | CVE-2004-2085 | Multiple cross-site scripting (XSS) vulnerabilities in Brad Fears phpCodeCabinet 0.4 and earlier allow remote attackers to inject arbitrary web script or HTML via multiple parameters, including (1) the sid parameter to comments.php, (2) the cid, cf, or rfd parameters to category.php, or the cid parameter to (3) input.php, (4) browse.php, (5) themes/facade/header.php, or (6) themes/phpcc/header.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72718 | CVE-2004-2341 | PHP file include injection vulnerability in isearch.inc.php for iSearch allows remote attackers to execute arbitrary code via the isearch_path parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72974 | CVE-2004-2597 | Quake II server before R1Q2, as used in multiple products, allows remote attackers to bypass IP-based access control rules via a userinfo string that already contains an ip key/value pair but is also long enough to cause a new key/value pair to be truncated, which interferes with the server's ability to find the client's IP address. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
73486 | CVE-2003-0352 | Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 311 of 17672, showing 5 records out of 88360 total, starting on record 1551, ending on 1555