CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9938 | CVE-2004-1510 | Candidate | WebCalendar allows remote attackers to gain privileges by modifying critical parameters to (1) view_entry.php or (2) upcoming.php. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9939 | CVE-2004-1511 | Candidate | Hotfoon 4.0 does not notify users before opening links in web browsers, which could allow remote attackers to execute arbitrary code via a certain link sent in a chat window. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9940 | CVE-2004-1512 | Candidate | Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute arbitrary web script or HTML via script code in the URL, which is not quoted in the resulting default error page. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9941 | CVE-2004-1513 | Candidate | 04WebServer 1.42 does not adequately filter data that is written to log files, which could allow remote attackers to inject carriage return characters into the log file and spoof log entries. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9942 | CVE-2004-1514 | Candidate | 04WebServer 1.42 allows remote attackers to cause a denial of service (fail to restart properly) via an HTTP request for an MS-DOS device name such as COM2. | Assigned (20050218) | None (candidate not yet proposed) | View |
Page 1181 of 20943, showing 5 records out of 104715 total, starting on record 5901, ending on 5905