CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9993 | CVE-2004-1565 | Candidate | list.php in w-Agora 4.1.6a allows remote attackers to reveal the full path via a crafted HTTP request, possibly involving a malformed id parameter. | Assigned (20050220) | None (candidate not yet proposed) | View | |
9994 | CVE-2004-1566 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to execute arbitrary web script or HTML via the module parameter. | Assigned (20050220) | None (candidate not yet proposed) | View | |
9995 | CVE-2004-1567 | Candidate | profile.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to gain privileges by setting the mail parameter to 1, which is the value for an administrator. | Assigned (20050220) | None (candidate not yet proposed) | View | |
9996 | CVE-2004-1568 | Candidate | Directory traversal vulnerability in ParaChat Server 5.5 allows remote attackers to read arbitrary files via a ..%5C (hex-encoded dot dot) in the URL. | Assigned (20050220) | None (candidate not yet proposed) | View | |
9997 | CVE-2004-1569 | Candidate | Buffer overflow in (1) MusicConverter.exe, (2) playlist.exe, and (3) amp.exe in dBpowerAMP Audio Player 2.0 and dbPowerAmp Music Converter 10.0 allows remote attackers to cause a denial of service or execute arbitrary code via a .pls or .m3u playlist that contains long File1 (filename) fields. | Assigned (20050220) | None (candidate not yet proposed) | View |
Page 1193 of 20943, showing 5 records out of 104715 total, starting on record 5961, ending on 5965