NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71281 | CVE-2004-0871 | Mozilla does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain, which could allow remote attackers to steal cookies and conduct unauthorized activities, aka "Cross Security Boundary Cookie Injection." | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71537 | CVE-2004-1147 | phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
72049 | CVE-2004-1670 | Multiple directory traversal vulnerabilities Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7, and possibly other versions, allow remote attackers to (1) create arbitrary directories via a .. (dot dot) in the user parameter to viewaction.html or (2) rename arbitrary files via a ....// (doubled dot dot) in the folderold or folder parameters to folders.html. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72305 | CVE-2004-1927 | Directory traversal vulnerability in the map feature (tiki-map.phtml) in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to determine the existence of arbitrary files via .. (dot dot) sequences in the mapfile parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72561 | CVE-2004-2184 | Directory traversal vulnerability in Digicraft Yak! server 2.0 through 2.1.2 allows remote attackers to read or write arbitrary files via ../ or .. sequences in commands such as (1) dir or (2) put. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 620 of 17672, showing 5 records out of 88360 total, starting on record 3096, ending on 3100