NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69274 | CVE-2005-3636 | Cross-site scripting (XSS) vulnerability in SAP Web Application Server (WAS) 6.10 allows remote attackers to inject arbitrary web script or HTML via Error Pages. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70810 | CVE-2004-0359 | Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to execute arbitrary script as other users via the (1) c, (2) f, (3) showtopic, (4) showuser, or (5) username parameters. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71066 | CVE-2004-0639 | Multiple cross-site scripting (XSS) vulnerabilities in Squirrelmail 1.2.10 and earlier allow remote attackers to inject arbitrary HTML or script via (1) the $mailer variable in read_body.php, (2) the $senderNames_part variable in mailbox_display.php, and possibly other vectors including (3) the $event_title variable or (4) the $event_text variable. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71322 | CVE-2004-0920 | Symantec Norton AntiVirus 2004, and earlier versions, allows a virus or other malicious code to avoid detection or cause a denial of service (application crash) using a filename containing an MS-DOS device name. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71578 | CVE-2004-1189 | The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an array index out-of-bounds error and may allow authenticated users to execute arbitrary code via a heap-based buffer overflow. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View |
Page 825 of 17672, showing 5 records out of 88360 total, starting on record 4121, ending on 4125