NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72630 | CVE-2004-2253 | Directory traversal vulnerability in user.cgi in SurgeLDAP 1.0g and earlier allows remote attackers to read arbitrary files via a .. in the page parameter of the show command. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72886 | CVE-2004-2509 | Cross-site scripting (XSS) vulnerabilities in (1) calendar.php, (2) login.php, and (3) online.php in Infopop UBB.Threads 6.2.3 and 6.5 allow remote attackers to inject arbitrary web script or HTML via the Cat parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
73398 | CVE-2003-0263 | Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
73910 | CVE-2003-0809 | Internet Explorer 5.01 through 6.0 does not properly handle object tags returned from a Web server during XML data binding, which allows remote attackers to execute arbitrary code via an HTML e-mail message or web page. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
74166 | CVE-2003-1094 | BEA WebLogic Server and Express version 7.0 SP3 may follow certain code execution paths that result in an incorrect current user, such as in the frequent use of JNDI initial contexts, which could allow remote authenticated users to gain privileges. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View |
Page 937 of 17672, showing 5 records out of 88360 total, starting on record 4681, ending on 4685