NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72217 | CVE-2004-1839 | MS Analysis module 2.0 for PHP-Nuke allows remote attackers to obtain sensitive information via a direct request to (1) browsers.php, (2) mstrack.php, or (3) title.php, which reveal the full path in a PHP error message. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
6937 | CVE-2008-7206 | Unspecified vulnerability in Electronic Logbook (ELOG) before 2.7.2 has unknown impact and attack vectors when the "logbook contains HTML code," probably cross-site scripting (XSS). | 2 | 4.3 | Medium | 2017-01-03 | 2011-12-20 | View | |
72473 | CVE-2004-2096 | Cross-site scripting (XSS) vulnerability in Mephistoles httpd 0.6.0 final allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into the URL. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72729 | CVE-2004-2352 | Cross-site scripting (XSS) vulnerability in GBook for PHP-Nuke 1.0 allows remote attackers to inject arbitrary web script or HTML via cookies that are stored in the $_COOKIE PHP variable, which is not cleansed by PHP-Nuke. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
72985 | CVE-2004-2608 | SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the unencrypted username and password of the administrator"s account. | 2 | 5 | Medium | 2016-12-20 | 2010-05-29 | View |
Page 904 of 17672, showing 5 records out of 88360 total, starting on record 4516, ending on 4520