NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71796 | CVE-2004-1417 | Cross-site scripting (XSS) vulnerability in login.php in PsychoStats 2.2.4 Beta and earlier allows remote attackers to inject arbitrary web script or HTML via the login parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72052 | CVE-2004-1673 | accountsettings_add.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allow remote attackers to create text files with arbitrary content via the accountid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72308 | CVE-2004-1930 | Cross-site scripting (XSS) vulnerability in the cookiedecode function in mainfile.php for PHP-Nuke 6.x through 7.2, when themes are used, allows remote attackers to inject arbitrary web script or HTML via a base64-encoded user parameter or cookie. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72820 | CVE-2004-2443 | Jaws 0.3 allows remote attackers to bypass authentication and via an HTTP request to admin.php with the logged cookie set to the MD5 hash of a null password, which is compared against the logged session variable by the logged_on function in application.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
74100 | CVE-2003-1028 | The download function of Internet Explorer 6 SP1 allows remote attackers to obtain the cache directory name via an HTTP response with an invalid ContentType and a .htm file, which could allow remote attackers to bypass security mechanisms that rely on random names, as demonstrated by threadid10008. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 681 of 17672, showing 5 records out of 88360 total, starting on record 3401, ending on 3405