CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9938  CVE-2004-1510  Candidate  WebCalendar allows remote attackers to gain privileges by modifying critical parameters to (1) view_entry.php or (2) upcoming.php.  Assigned (20050218)  None (candidate not yet proposed)    View
9939  CVE-2004-1511  Candidate  Hotfoon 4.0 does not notify users before opening links in web browsers, which could allow remote attackers to execute arbitrary code via a certain link sent in a chat window.  Assigned (20050218)  None (candidate not yet proposed)    View
9940  CVE-2004-1512  Candidate  Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute arbitrary web script or HTML via script code in the URL, which is not quoted in the resulting default error page.  Assigned (20050218)  None (candidate not yet proposed)    View
9941  CVE-2004-1513  Candidate  04WebServer 1.42 does not adequately filter data that is written to log files, which could allow remote attackers to inject carriage return characters into the log file and spoof log entries.  Assigned (20050218)  None (candidate not yet proposed)    View
9942  CVE-2004-1514  Candidate  04WebServer 1.42 allows remote attackers to cause a denial of service (fail to restart properly) via an HTTP request for an MS-DOS device name such as COM2.  Assigned (20050218)  None (candidate not yet proposed)    View

Page 1181 of 20943, showing 5 records out of 104715 total, starting on record 5901, ending on 5905

Actions