CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8774  CVE-2004-0346  Candidate  Off-by-one buffer overflow in _xlate_ascii_write() in ProFTPD 1.2.7 through 1.2.9rc2p allows local users to gain privileges via a 1024 byte RETR command.  Proposed (20040318)  ACCEPT(2) Armstrong, Stracener | NOOP(3) Cole, Cox, Wall    View
8776  CVE-2004-0348  Candidate  SQL injection vulnerability in viewCart.asp in SpiderSales shopping cart software allows remote attackers to execute arbitrary SQL via the userId parameter.  Proposed (20040318)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8777  CVE-2004-0349  Candidate  Directory traversal vulnerability in GWeb HTTP Server 0.6 allows remote attackers to view arbitrary files via a .. (dot dot) in the URL.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8778  CVE-2004-0350  Candidate  SpiderSales shopping cart does not enforce a minimum length for the private key, which can make it easier for local users to obtain the private key by factoring.  Proposed (20040318)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8779  CVE-2004-0351  Candidate  Spider Sales shopping cart stores the private key in the same database and table as the public key, which allows local users with access to the database to decrypt data.  Proposed (20040318)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View

Page 11 of 20943, showing 5 records out of 104715 total, starting on record 51, ending on 55

<<first 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 last>>

Actions