NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70810 | CVE-2004-0359 | Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to execute arbitrary script as other users via the (1) c, (2) f, (3) showtopic, (4) showuser, or (5) username parameters. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71066 | CVE-2004-0639 | Multiple cross-site scripting (XSS) vulnerabilities in Squirrelmail 1.2.10 and earlier allow remote attackers to inject arbitrary HTML or script via (1) the $mailer variable in read_body.php, (2) the $senderNames_part variable in mailbox_display.php, and possibly other vectors including (3) the $event_title variable or (4) the $event_text variable. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
71322 | CVE-2004-0920 | Symantec Norton AntiVirus 2004, and earlier versions, allows a virus or other malicious code to avoid detection or cause a denial of service (application crash) using a filename containing an MS-DOS device name. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71578 | CVE-2004-1189 | The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an array index out-of-bounds error and may allow authenticated users to execute arbitrary code via a heap-based buffer overflow. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71834 | CVE-2004-1455 | Stack-based buffer overflow in Xine-lib-rc5 in xine-lib 1_rc5-r2 and earlier allows remote attackers to execute arbitrary code via crafted playlists that result in a long vcd:// URL. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 834 of 17672, showing 5 records out of 88360 total, starting on record 4166, ending on 4170