NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71845 | CVE-2004-1466 | The set_time_limit function in Gallery before 1.4.4_p2 deletes non-image files in a temporary directory every 30 seconds after they have been uploaded using save_photos.php, which allows remote attackers to upload and execute execute arbitrary scripts before they are deleted, if the temporary directory is under the web root. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72101 | CVE-2004-1722 | SQL injection vulnerability in calendar.html in Merak Mail Server 5.2.7 allows remote attackers to execute arbitrary SQL statements via the schedule parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72357 | CVE-2004-1980 | Directory traversal vulnerability in glossary.php in PROPS 0.6.1 allows remote attackers to view arbitrary files via a .. (dot dot) in (1) module or (2) format variables. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72869 | CVE-2004-2492 | Cross-site scripting (XSS) vulnerability in Groupmax World Wide Web (GmaxWWW) Desktop 5, 6, and Desktop for Jichitai 6, allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
73381 | CVE-2003-0245 | Vulnerability in the apr_psprintf function in the Apache Portable Runtime (APR) library for Apache 2.0.37 through 2.0.45 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long strings, as demonstrated using XML objects to mod_dav, and possibly other vectors. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 869 of 17672, showing 5 records out of 88360 total, starting on record 4341, ending on 4345