CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10028  CVE-2004-1600  Candidate  index.php in CoolPHP 1.0-stable allows remote attackers to gain sensitive information via an invalid op parameter, which reveals the path in an error message.  Assigned (20050220)  None (candidate not yet proposed)    View
10029  CVE-2004-1601  Candidate  Directory traversal vulnerability in index.php in CoolPHP 1.0-stable allows remote attackers to access arbitrary files and execute local PHP scripts via a .. (dot dot) in the op parameter.  Assigned (20050220)  None (candidate not yet proposed)    View
10030  CVE-2004-1602  Candidate  ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which allows remote attackers to identify valid usernames by timing the server response.  Assigned (20050220)  None (candidate not yet proposed)    View
10031  CVE-2004-1603  Candidate  cPanel 9.4.1-RELEASE-64 follows hard links, which allows local users to (1) read arbitrary files via the backup feature or (2) chown arbitrary files via the .htaccess file when Front Page extensions are enabled or disabled.  Assigned (20050220)  None (candidate not yet proposed)    View
10032  CVE-2004-1604  Candidate  cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private directory, which is created when Front Page extensions are enabled.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 1200 of 20943, showing 5 records out of 104715 total, starting on record 5996, ending on 6000

Actions