NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70769 | CVE-2004-0318 | Load Sharing Facility (LSF) 4.x, 5.x, and 6.x uses the LSF_EAUTH_UID environment variable, if it exists, instead of the real UID of the user, which could allow remote attackers within the local cluster to gain privileges. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71025 | CVE-2004-0598 | The png_handle_iCCP function in libpng 1.2.5 and earlier allows remote attackers to cause a denial of service (application crash) via a certain PNG image that triggers a null dereference. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71281 | CVE-2004-0871 | Mozilla does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domain, which could allow remote attackers to steal cookies and conduct unauthorized activities, aka "Cross Security Boundary Cookie Injection." | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71537 | CVE-2004-1147 | phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
72049 | CVE-2004-1670 | Multiple directory traversal vulnerabilities Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7, and possibly other versions, allow remote attackers to (1) create arbitrary directories via a .. (dot dot) in the user parameter to viewaction.html or (2) rename arbitrary files via a ....// (doubled dot dot) in the folderold or folder parameters to folders.html. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 670 of 17672, showing 5 records out of 88360 total, starting on record 3346, ending on 3350