CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11651 | CVE-2005-0445 | Candidate | Cross-site scripting (XSS) vulnerability in Open WebMail 2.x allows remote attackers to inject arbitrary HTML or web script via the domain name parameter (logindomain) in the login page. | Assigned (20050215) | None (candidate not yet proposed) | View | |
9915 | CVE-2004-1487 | Candidate | wget 1.8.x and 1.9.x allows a remote malicious web server to overwrite certain files via a redirection URL containing a ".." that resolves to the IP address of the malicious server, which bypasses wget"s filtering for ".." sequences. | Assigned (20050215) | None (candidate not yet proposed) | View | |
9916 | CVE-2004-1488 | Candidate | wget 1.8.x and 1.9.x does not filter or quote control characters when displaying HTTP responses to the terminal, which may allow remote malicious web servers to inject terminal escape sequences and execute arbitrary code. | Assigned (20050215) | None (candidate not yet proposed) | View | |
11652 | CVE-2005-0446 | Candidate | Squid 2.5.STABLE8 and earlier allows remote attackers to cause a denial of service (crash) via certain DNS responses regarding (1) Fully Qualified Domain Names (FQDN) in fqdncache.c or (2) IP addresses in ipcache.c, which trigger an assertion failure. | Assigned (20050216) | None (candidate not yet proposed) | View | |
11653 | CVE-2005-0447 | Candidate | Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (hang) via a flood of certain ARP packets. | Assigned (20050216) | None (candidate not yet proposed) | View |
Page 1171 of 20943, showing 5 records out of 104715 total, starting on record 5851, ending on 5855