CVE List
| Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
|---|---|---|---|---|---|---|---|
| 9869 | CVE-2004-1441 | Candidate | Cross-site scripting (XSS) vulnerability in icq.cgi in Board Power 2.04PF allows remote attackers to inject arbitrary web script or HTML via the action parameter. | Assigned (20050213) | None (candidate not yet proposed) | View | |
| 9870 | CVE-2004-1442 | Candidate | Cross-site scripting (XSS) vulnerability in db2www CGI interpreter in IBM Net.Data 7 and 7.2 allows remote attackers to inject arbitrary web script or HTML via a macro filename, which is not properly handled by error emssages such as "DTWP001E." | Assigned (20050213) | None (candidate not yet proposed) | View | |
| 9871 | CVE-2004-1443 | Candidate | Cross-site scripting (XSS) vulnerability in the inline MIME viewer in Horde-IMP (Internet Messaging Program) 3.2.4 and earlier, when used with Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via an e-mail message. | Assigned (20050213) | None (candidate not yet proposed) | View | |
| 9872 | CVE-2004-1444 | Candidate | Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via .. (dot dot) sequences in an @@ command in an HTTP GET request. | Assigned (20050213) | None (candidate not yet proposed) | View | |
| 9873 | CVE-2004-1445 | Candidate | A race condition in nessus-adduser in Nessus 2.0.11 and possibly earlier versions, if the TMPDIR environment variable is not set, allows local users to gain privileges. | Assigned (20050213) | None (candidate not yet proposed) | View |
Page 1149 of 20943, showing 5 records out of 104715 total, starting on record 5741, ending on 5745