NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71821 | CVE-2004-1442 | Cross-site scripting (XSS) vulnerability in db2www CGI interpreter in IBM Net.Data 7 and 7.2 allows remote attackers to inject arbitrary web script or HTML via a macro filename, which is not properly handled by error messages such as "DTWP001E." | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
72077 | CVE-2004-1698 | The Base64 function in PopMessenger 1.60 (before 20 Sep 2004) and earlier allows remote attackers to cause a denial of service (application crash) via invalid characters in a message, which causes several alert dialogs to be displayed and leads to a crash. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72333 | CVE-2004-1956 | PostNuke 0.7.2.6 allows remote attackers to gain information via a direct HTTP request to files in the (1) includes/blocks directory, (2) pnadodb directory, (3) NS-NewUser module, (4) NS-Your_Account, (5) NS-LostPassword module, or (6) NS-User module which reveals the path to the web server in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72589 | CVE-2004-2212 | SQL injection vulnerability in forum.asp in AliveSites Forums 2.0 allows remote attackers to execute arbitrary SQL commands via the forum_id parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72845 | CVE-2004-2468 | Cross-site scripting (XSS) vulnerability in SillySearch 2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 767 of 17672, showing 5 records out of 88360 total, starting on record 3831, ending on 3835