NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68423  CVE-2005-2734  Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag.    4.3  Medium  2017-07-18  2017-07-10  View
69191  CVE-2005-3530  Cross-site scripting (XSS) vulnerability in Antville 1.1 allows remote attackers to inject arbitrary web script or HTML via the notfound.skin error document.    4.3  Medium  2017-07-18  2017-07-10  View
70983  CVE-2004-0552  Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed.    7.5  High  2017-07-18  2017-07-10  View
71239  CVE-2004-0815  The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames.    7.5  High  2017-07-18  2017-07-10  View
71495  CVE-2004-1103  MailPost 5.1.1sv, and possibly earlier versions, when debug mode is enabled, allows remote attackers to gain sensitive information via the debug parameter, which reveals information such as the path to the web root and the web server version.    Medium  2017-07-18  2017-07-10  View

Page 529 of 17672, showing 5 records out of 88360 total, starting on record 2641, ending on 2645

Actions