CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9593 | CVE-2004-1165 | Candidate | Konqueror 3.3.1 allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the commands to be inserted into the resulting FTP session, as demonstrated using a PORT command. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9594 | CVE-2004-1166 | Candidate | CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the commands to be inserted into the resulting FTP session, as demonstrated using a PORT command. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9595 | CVE-2004-1167 | Candidate | mirrorselect before 0.89 creates temporary files in a world-writable location with predictable file names, which allows remote attackers to overwrite arbitrary files via a symlink attack. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9596 | CVE-2004-1168 | Candidate | Stack-based buffer overflow in the WebDav handler in MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to execute arbitrary code via a long Overwrite header. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9597 | CVE-2004-1169 | Candidate | MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to cause a denial of service (application crash) via an HTTP GET request for a file that does not exist, followed by two carriage returns, which causes a NULL dereference. | Assigned (20041209) | None (candidate not yet proposed) | View |
Page 1009 of 20943, showing 5 records out of 104715 total, starting on record 5041, ending on 5045