CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9869  CVE-2004-1441  Candidate  Cross-site scripting (XSS) vulnerability in icq.cgi in Board Power 2.04PF allows remote attackers to inject arbitrary web script or HTML via the action parameter.  Assigned (20050213)  None (candidate not yet proposed)    View
9870  CVE-2004-1442  Candidate  Cross-site scripting (XSS) vulnerability in db2www CGI interpreter in IBM Net.Data 7 and 7.2 allows remote attackers to inject arbitrary web script or HTML via a macro filename, which is not properly handled by error emssages such as "DTWP001E."  Assigned (20050213)  None (candidate not yet proposed)    View
9871  CVE-2004-1443  Candidate  Cross-site scripting (XSS) vulnerability in the inline MIME viewer in Horde-IMP (Internet Messaging Program) 3.2.4 and earlier, when used with Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via an e-mail message.  Assigned (20050213)  None (candidate not yet proposed)    View
9872  CVE-2004-1444  Candidate  Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via .. (dot dot) sequences in an @@ command in an HTTP GET request.  Assigned (20050213)  None (candidate not yet proposed)    View
9873  CVE-2004-1445  Candidate  A race condition in nessus-adduser in Nessus 2.0.11 and possibly earlier versions, if the TMPDIR environment variable is not set, allows local users to gain privileges.  Assigned (20050213)  None (candidate not yet proposed)    View

Page 1149 of 20943, showing 5 records out of 104715 total, starting on record 5741, ending on 5745

Actions