NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71803 | CVE-2004-1424 | Cross-site scripting (XSS) vulnerability in view.php in Moodle 1.4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72059 | CVE-2004-1680 | application.cgi in the Pingtel Xpressa handset running firmware 2.1.11.24 allows remote authenticated users to cause a denial of service (VxWorks OS crash) via a long HTTP GET request, possibly triggering a buffer overflow. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72315 | CVE-2004-1938 | SQL injection vulnerability in userlogin.php in Phorum 3.4.7 allows remote attackers to execute arbitrary SQL commands via doubly hex-encoded characters such as "%2527", which is translated to "'", as demonstrated using the phorum_uriauth parameter to list.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72827 | CVE-2004-2450 | The client and server for Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier report sensitive information such as IDs and source IP addresses, which allows remote attackers to obtain sensitive information. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74107 | CVE-2003-1035 | The default installation of SAP R/3 46C/D allows remote attackers to bypass account locking by using the RFC API instead of the SAPGUI to conduct a brute force password guessing attack, which does not lock out the account like the SAPGUI does. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 705 of 17672, showing 5 records out of 88360 total, starting on record 3521, ending on 3525