NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70687 | CVE-2004-0236 | SQL injection vulnerability in login.asp in thePHOTOtool allows remote attackers to gain unauthorized access via the password field. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
70943 | CVE-2004-0507 | Buffer overflow in the MMSE dissector for Ethereal 0.10.1 to 0.10.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71199 | CVE-2004-0774 | RealNetworks Helix Universal Server 9.0.2 for Linux and 9.0.3 for Windows allows remote attackers to cause a denial of service (CPU and memory exhaustion) via a POST request with a Content-Length header set to -1. | 2 | 7.8 | High | 2017-07-18 | 2017-07-10 | View | |
71455 | CVE-2004-1063 | PHP 4.x to 4.3.9, and PHP 5.x to 5.0.2, when running in safe mode on a multithreaded Unix webserver, allows local users to bypass safe_mode_exec_dir restrictions and execute commands outside of the intended safe_mode_exec_dir via shell metacharacters in the current directory name. NOTE: this issue was originally REJECTed by its CNA before publication, but that decision is in active dispute. This candidate may change significantly in the future as a result of further discussion. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71711 | CVE-2004-1331 | The execCommand method in Microsoft Internet Explorer 6.0 SP2 allows remote attackers to bypass the "File Download - Security Warning" dialog and save arbitrary files with arbitrary extensions via the SaveAs command. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View |
Page 377 of 17672, showing 5 records out of 88360 total, starting on record 1881, ending on 1885