CVE List
| Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
|---|---|---|---|---|---|---|---|
| 9982 | CVE-2004-1554 | Candidate | PHP remote file inclusion vulnerability in livre_include.php in @lex Guestbook allows remote attackers to execute arbitrary PHP code by modifying the chem_absolu parameter to reference a URL on a remote web server that contains the code. | Assigned (20050220) | None (candidate not yet proposed) | View | |
| 9983 | CVE-2004-1555 | Candidate | Multiple SQL injection vulnerabilities in BroadBoard Instant ASP Message Board allow remote attackers to run arbitrary SQL commands via the (1) keywords parameter to search.asp, (2) handle parameter to profile.asp, (3) txtUserHandle parameter to reg2.asp or (4) txtUserEmail parameter to forgot.asp. | Assigned (20050220) | None (candidate not yet proposed) | View | |
| 10068 | CVE-2004-1640 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 0.94 and 1.0 allow remote attackers to execute arbitrary web script and HTML via the (1) terme parameter to search.php or (2) letter parameter to letter.php. | Assigned (20050221) | None (candidate not yet proposed) | View | |
| 10069 | CVE-2004-1641 | Candidate | Heap-based buffer overflow in Titan FTP 3.21 and earlier allows remote attackers to cause a denial of service (crash) via a long FTP command such as (1) CWD, (2) STAT, or (3) LIST. | Assigned (20050221) | None (candidate not yet proposed) | View | |
| 10070 | CVE-2004-1642 | Candidate | WFTPD Pro Server 3.21 allows remote authenticated users to cause a denial of service (crash) via a series of long MLIST commands. | Assigned (20050221) | None (candidate not yet proposed) | View |
Page 1210 of 20943, showing 5 records out of 104715 total, starting on record 6046, ending on 6050