NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68423 | CVE-2005-2734 | Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
69191 | CVE-2005-3530 | Cross-site scripting (XSS) vulnerability in Antville 1.1 allows remote attackers to inject arbitrary web script or HTML via the notfound.skin error document. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70983 | CVE-2004-0552 | Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71239 | CVE-2004-0815 | The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71495 | CVE-2004-1103 | MailPost 5.1.1sv, and possibly earlier versions, when debug mode is enabled, allows remote attackers to gain sensitive information via the debug parameter, which reveals information such as the path to the web root and the web server version. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 529 of 17672, showing 5 records out of 88360 total, starting on record 2641, ending on 2645