NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72217  CVE-2004-1839  MS Analysis module 2.0 for PHP-Nuke allows remote attackers to obtain sensitive information via a direct request to (1) browsers.php, (2) mstrack.php, or (3) title.php, which reveal the full path in a PHP error message.    Medium  2016-12-20  2016-10-17  View
6937  CVE-2008-7206  Unspecified vulnerability in Electronic Logbook (ELOG) before 2.7.2 has unknown impact and attack vectors when the "logbook contains HTML code," probably cross-site scripting (XSS).    4.3  Medium  2017-01-03  2011-12-20  View
72473  CVE-2004-2096  Cross-site scripting (XSS) vulnerability in Mephistoles httpd 0.6.0 final allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into the URL.    4.3  Medium  2017-07-18  2017-07-10  View
72729  CVE-2004-2352  Cross-site scripting (XSS) vulnerability in GBook for PHP-Nuke 1.0 allows remote attackers to inject arbitrary web script or HTML via cookies that are stored in the $_COOKIE PHP variable, which is not cleansed by PHP-Nuke.    4.3  Medium  2017-07-18  2017-07-10  View
72985  CVE-2004-2608  SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the unencrypted username and password of the administrator"s account.    Medium  2016-12-20  2010-05-29  View

Page 904 of 17672, showing 5 records out of 88360 total, starting on record 4516, ending on 4520

Actions