CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10063  CVE-2004-1635  Candidate  Bugzilla 2.17.1 through 2.18rc2 and 2.19 from cvs, when using the insidergroup feature, does not sufficiently protect private attachments when there are changes to the metadata, such as filename, description, MIME type, or review flags, which allows remote authenticated users to obtain sensitive information when (1) viewing the bug activity log or (2) receiving bug change notification mails.  Assigned (20050220)  None (candidate not yet proposed)    View
10064  CVE-2004-1636  Candidate  Heap-based buffer overflow in the WvTFTPServer::new_connection function in wvtftpserver.cc for WvTftp 0.9 allows remote attackers to execute arbitrary code via a long option string in a TFTP packet.  Assigned (20050220)  None (candidate not yet proposed)    View
10065  CVE-2004-1637  Candidate  The Hawking Technologies HAR11A modem/router allows remote attackers to obtain sensitive information by connecting to port 254, which displays a management interface and information on established connections.  Assigned (20050220)  None (candidate not yet proposed)    View
10066  CVE-2004-1638  Candidate  Buffer overflow in MailCarrier 2.51 allows remote attackers to execute arbitrary code via a long (1) EHLO and possibly (2) HELO command.  Assigned (20050220)  None (candidate not yet proposed)    View
10067  CVE-2004-1639  Candidate  Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attackers to cause a denial of service (application crash or memory consumption) via a large binary file with a .html extension.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 1207 of 20943, showing 5 records out of 104715 total, starting on record 6031, ending on 6035

Actions