CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9953 | CVE-2004-1525 | Candidate | Hired Team: Trial 2.0 and earlier and 2.200 allows remote attackers to cause a denial of service (application crash) via the status command. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9954 | CVE-2004-1526 | Candidate | Hired Team: Trial 2.0 and earlier and 2.200 does not limit how game players can kick other players off the server, including the administrator. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9955 | CVE-2004-1527 | Candidate | Microsoft Internet Explorer 6.0 SP1 does not properly handle certain character strings in the Path attribute, which can cause it to modify cookies in other domains when the attacker"s domain name is within the target"s domain name or when wildcard DNS is being used, which allows remote attackers to hijack web sessions. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9956 | CVE-2004-1528 | Candidate | The Event Calendar module 2.13 for PHP-Nuke allows remote attackers to gain sensitive information via an HTTP request to (1) config.php, (2) index.php, or (3) submit.php, which reveal the full path in an error message. | Assigned (20050218) | None (candidate not yet proposed) | View | |
9957 | CVE-2004-1529 | Candidate | Cross-site scripting (XSS) vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary web script via the (1) type, (2) day, (3) month, or (4) year parameters in a Preview operation, or (5) event comments. | Assigned (20050218) | None (candidate not yet proposed) | View |
Page 1184 of 20943, showing 5 records out of 104715 total, starting on record 5916, ending on 5920