NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71744 | CVE-2004-1365 | Extproc in Oracle 9i and 10g does not require authentication to load a library or execute a function, which allows local users to execute arbitrary commands as the Oracle user. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
72000 | CVE-2004-1621 | ** DISPUTED ** NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in IBM Lotus Notes R6 and Domino R6, and possibly earlier versions, allows remote attackers to execute arbitrary web script or HTML via square brackets at the beginning and end of (1) computed for display, (2) computed when composed, or (3) computed text element fields. NOTE: the vendor has disputed this issue, saying that it is not a problem with Notes/Domino itself, but with the applications that do not properly handle this feature. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72256 | CVE-2004-1878 | LINBOX LIN:BOX allows remote attackers to bypass authentication, obtain sensitive information, or gain access via a direct request to admin/user.pl preceded by // (double leading slash). | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72768 | CVE-2004-2391 | Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of service a message with an empty <priority/> tag. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74048 | CVE-2003-0975 | Apple Safari 1.0 through 1.1 on Mac OS X 10.3.1 and Mac OS X 10.2.8 allows remote attackers to steal user cookies from another domain via a link with a hex-encoded null character (%00) followed by the target domain. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 749 of 17672, showing 5 records out of 88360 total, starting on record 3741, ending on 3745