NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71443 | CVE-2004-1051 | sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create functions that have the same name as any program within the bash script that is called without using the program's full pathname. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71699 | CVE-2004-1319 | The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by setting a name for a window, opening a child page whose target is the window with the given name, then injecting the script from the parent into the child using execScript, as demonstrated by "AbusiveParent" in Internet Explorer 6.0.2900.2180. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71955 | CVE-2004-1576 | Format string vulnerability in Judge Dredd: Dredd vs. Death 1.01 and earlier allows remote attackers to cause a denial of service (application crash) via format string specifiers in a chat message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72211 | CVE-2004-1833 | The admin.ib file in Borland Interbase 7.1 for Linux has default world writable permissions, which allows local users to gain database administrative privileges. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72467 | CVE-2004-2090 | Microsoft Internet Explorer 5.0.1 through 6.0 allows remote attackers to determine the existence of arbitrary files via the VBScript LoadPicture method, which returns an error code if the file does not exist. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 332 of 17672, showing 5 records out of 88360 total, starting on record 1656, ending on 1660