NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72192 | CVE-2004-1814 | Directory traversal vulnerability in VocalTec VGW4/8 Gateway 8.0 allows remote attackers to read protected files via .. (dot dot) sequences in an HTTP request, as demonstrated using home.asp. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6912 | CVE-2008-7181 | Butterfly Organizer 2.0.0 allows remote attackers to (1) delete arbitrary categories via a modified tablehere parameter to category-delete.php with the is_js_confirmed parameter set to 1, or (2) delete arbitrary accounts via the mytable parameter to delete.php. | 2 | 7.5 | High | 2017-01-03 | 2009-09-09 | View | |
72448 | CVE-2004-2071 | Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers to bypass authentication in the web interface via an HTTP GET request with two slashes ("//") after the server name. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
7168 | CVE-2011-0030 | The Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly kill processes after a logout, which allows local users to obtain sensitive information or gain privileges via a crafted application that continues to execute throughout the logout of one user and the login session of the next user, aka "CSRSS Elevation of Privilege Vulnerability," a different vulnerability than CVE-2010-0023. | 2 | 4.7 | Medium | 2017-01-07 | 2013-02-14 | View | |
72704 | CVE-2004-2327 | Vizer Web Server 1.9.1 allows remote attackers to cause a denial of service (crash) via multiple malformed requests including (1) requests without GET, (2) GET requests without HTTP, (3) or long GET requests. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 362 of 17672, showing 5 records out of 88360 total, starting on record 1806, ending on 1810