CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9904  CVE-2004-1476  Candidate  Stack-based buffer overflow in the VideoCD (VCD) code in xine-lib 1-rc2 through 1-rc5, as derived from libcdio, allows attackers to execute arbitrary code via a VideoCD with an unterminated disk label.  Assigned (20050213)  None (candidate not yet proposed)    View
9905  CVE-2004-1477  Candidate  Cross-site scripting (XSS) vulnerability in the Management Console in JRun 4.0 allows remote attackers to execute arbitrary web script or HTML and possibly hijack a user"s session.  Assigned (20050213)  None (candidate not yet proposed)    View
9906  CVE-2004-1478  Candidate  JRun 4.0 does not properly generate and handle the JSESSIONID, which allows remote attackers to perform a session fixation attack and hijack a user"s HTTP session.  Assigned (20050213)  None (candidate not yet proposed)    View
9907  CVE-2004-1479  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0928. Reason: This candidate is a duplicate of CVE-2004-0928. Notes: All CVE users should reference CVE-2004-0928 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050213)  None (candidate not yet proposed)    View
9908  CVE-2004-1480  Candidate  Unknown vulnerability in the management station in HP StorageWorks Command View XP 1.8B and earlier allows remote attackers to bypass access restrictions.  Assigned (20050213)  None (candidate not yet proposed)    View

Page 1156 of 20943, showing 5 records out of 104715 total, starting on record 5776, ending on 5780

Actions