CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10028 | CVE-2004-1600 | Candidate | index.php in CoolPHP 1.0-stable allows remote attackers to gain sensitive information via an invalid op parameter, which reveals the path in an error message. | Assigned (20050220) | None (candidate not yet proposed) | View | |
10029 | CVE-2004-1601 | Candidate | Directory traversal vulnerability in index.php in CoolPHP 1.0-stable allows remote attackers to access arbitrary files and execute local PHP scripts via a .. (dot dot) in the op parameter. | Assigned (20050220) | None (candidate not yet proposed) | View | |
10030 | CVE-2004-1602 | Candidate | ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which allows remote attackers to identify valid usernames by timing the server response. | Assigned (20050220) | None (candidate not yet proposed) | View | |
10031 | CVE-2004-1603 | Candidate | cPanel 9.4.1-RELEASE-64 follows hard links, which allows local users to (1) read arbitrary files via the backup feature or (2) chown arbitrary files via the .htaccess file when Front Page extensions are enabled or disabled. | Assigned (20050220) | None (candidate not yet proposed) | View | |
10032 | CVE-2004-1604 | Candidate | cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private directory, which is created when Front Page extensions are enabled. | Assigned (20050220) | None (candidate not yet proposed) | View |
Page 1200 of 20943, showing 5 records out of 104715 total, starting on record 5996, ending on 6000