CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9593  CVE-2004-1165  Candidate  Konqueror 3.3.1 allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the commands to be inserted into the resulting FTP session, as demonstrated using a PORT command.  Assigned (20041209)  None (candidate not yet proposed)    View
9594  CVE-2004-1166  Candidate  CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the commands to be inserted into the resulting FTP session, as demonstrated using a PORT command.  Assigned (20041209)  None (candidate not yet proposed)    View
9595  CVE-2004-1167  Candidate  mirrorselect before 0.89 creates temporary files in a world-writable location with predictable file names, which allows remote attackers to overwrite arbitrary files via a symlink attack.  Assigned (20041209)  None (candidate not yet proposed)    View
9596  CVE-2004-1168  Candidate  Stack-based buffer overflow in the WebDav handler in MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to execute arbitrary code via a long Overwrite header.  Assigned (20041209)  None (candidate not yet proposed)    View
9597  CVE-2004-1169  Candidate  MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to cause a denial of service (application crash) via an HTTP GET request for a file that does not exist, followed by two carriage returns, which causes a NULL dereference.  Assigned (20041209)  None (candidate not yet proposed)    View

Page 1009 of 20943, showing 5 records out of 104715 total, starting on record 5041, ending on 5045

Actions