CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9823  CVE-2004-1395  Candidate  The Lithtech engine, as used in (1) Contract Jack 1.1 and earlier, (2) No one lives forever 2 1.3 and earlier, (3) Tron 2.0 1.042 and earlier, (4) F.E.A.R. (First Encounter Assault and Recon), and possibly other games, allows remote attackers to cause a denial of service (connection refused) via a UDP packet that causes recvfrom to generate a return code that causes the listening loop to exit, as demonstrated using zero byte packets or packets between 8193 and 12280 bytes, which result in conditions that are not "Operation would block."  Assigned (20050212)  None (candidate not yet proposed)    View
9824  CVE-2004-1396  Candidate  Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU consumption) via (1) an mp4 or m4a playlist file that contains invalid tag data or (2) an invalid .nsv or .nsa file.  Assigned (20050212)  None (candidate not yet proposed)    View
9825  CVE-2004-1397  Candidate  Cross-site scripting (XSS) vulnerability in UseModWiki 1.0 allows remote attackers to inject arbitrary web script or HTML via an argument to wiki.pl.  Assigned (20050212)  None (candidate not yet proposed)    View
9826  CVE-2004-1398  Candidate  Format string vulnerability in prelink.c in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via format string specifiers in the extension argument.  Assigned (20050212)  None (candidate not yet proposed)    View
9827  CVE-2004-1399  Candidate  Directory traversal vulnerability in the Attachment module 2.3.10 and earlier for phpBB allows remote attackers to read arbitrary files via a .. (dot dot) in the filename.  Assigned (20050212)  None (candidate not yet proposed)    View

Page 1137 of 20943, showing 5 records out of 104715 total, starting on record 5681, ending on 5685

Actions