CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8774 | CVE-2004-0346 | Candidate | Off-by-one buffer overflow in _xlate_ascii_write() in ProFTPD 1.2.7 through 1.2.9rc2p allows local users to gain privileges via a 1024 byte RETR command. | Proposed (20040318) | ACCEPT(2) Armstrong, Stracener | NOOP(3) Cole, Cox, Wall | View | |
8776 | CVE-2004-0348 | Candidate | SQL injection vulnerability in viewCart.asp in SpiderSales shopping cart software allows remote attackers to execute arbitrary SQL via the userId parameter. | Proposed (20040318) | ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall | View | |
8777 | CVE-2004-0349 | Candidate | Directory traversal vulnerability in GWeb HTTP Server 0.6 allows remote attackers to view arbitrary files via a .. (dot dot) in the URL. | Proposed (20040318) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8778 | CVE-2004-0350 | Candidate | SpiderSales shopping cart does not enforce a minimum length for the private key, which can make it easier for local users to obtain the private key by factoring. | Proposed (20040318) | ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall | View | |
8779 | CVE-2004-0351 | Candidate | Spider Sales shopping cart stores the private key in the same database and table as the public key, which allows local users with access to the database to decrypt data. | Proposed (20040318) | ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall | View |
Page 11 of 20943, showing 5 records out of 104715 total, starting on record 51, ending on 55