CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9953  CVE-2004-1525  Candidate  Hired Team: Trial 2.0 and earlier and 2.200 allows remote attackers to cause a denial of service (application crash) via the status command.  Assigned (20050218)  None (candidate not yet proposed)    View
9954  CVE-2004-1526  Candidate  Hired Team: Trial 2.0 and earlier and 2.200 does not limit how game players can kick other players off the server, including the administrator.  Assigned (20050218)  None (candidate not yet proposed)    View
9955  CVE-2004-1527  Candidate  Microsoft Internet Explorer 6.0 SP1 does not properly handle certain character strings in the Path attribute, which can cause it to modify cookies in other domains when the attacker"s domain name is within the target"s domain name or when wildcard DNS is being used, which allows remote attackers to hijack web sessions.  Assigned (20050218)  None (candidate not yet proposed)    View
9956  CVE-2004-1528  Candidate  The Event Calendar module 2.13 for PHP-Nuke allows remote attackers to gain sensitive information via an HTTP request to (1) config.php, (2) index.php, or (3) submit.php, which reveal the full path in an error message.  Assigned (20050218)  None (candidate not yet proposed)    View
9957  CVE-2004-1529  Candidate  Cross-site scripting (XSS) vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary web script via the (1) type, (2) day, (3) month, or (4) year parameters in a Preview operation, or (5) event comments.  Assigned (20050218)  None (candidate not yet proposed)    View

Page 1184 of 20943, showing 5 records out of 104715 total, starting on record 5916, ending on 5920

Actions