NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71183 | CVE-2004-0757 | Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71695 | CVE-2004-1315 | viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by double-encoding the highlight value so that special characters are inserted into the result, which is then processed by PHP exec, as exploited by the Santy.A worm. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71951 | CVE-2004-1572 | AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, which allows remote attackers to list files in those directories via a direct HTTP request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72207 | CVE-2004-1829 | Multiple cross-site scripting (XSS) vulnerabilities in error.php in Gijza.net Error Manager 2.1 for PHP-Nuke 6.0 allow remote attackers to inject arbitrary web script or HTML via the (1) pagetitle or (2) error parameters, or (3) certain parameters in the error log. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72463 | CVE-2004-2086 | Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP POST request with a long query parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 353 of 17672, showing 5 records out of 88360 total, starting on record 1761, ending on 1765