CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10111  CVE-2004-1683  Candidate  A race condition in crrtrap for QNX RTP 6.1 allows local users to gain privileges by modifying the PATH environment variable to reference a malicious io-graphics program before is executed by crrtrap.  Assigned (20050221)  None (candidate not yet proposed)    View
10112  CVE-2004-1684  Candidate  Zyxel P681 running ZyNOS Vt020225a contains portions of memory in an ARP request, which allows remote attackers to obtain sensitive information by sniffing the network.  Assigned (20050221)  None (candidate not yet proposed)    View
10113  CVE-2004-1685  Candidate  SMC routers SMC7004VWBR running firmware 1.00.014 and SMC7008ABR EU running firmware 1.42.003 allow remote attackers to bypass authentication by connecting to it from the same IP address as the administrator who is logged in, then accessing the setup_status.htm or status.HTM pages.  Assigned (20050221)  None (candidate not yet proposed)    View
10114  CVE-2004-1686  Candidate  Internet Explorer 6.0 in Windows XP SP2 allows remote attackers to bypass the Information Bar prompt for ActiveX and Javascript via an XHTML page that contains an Internet Explorer formatted comment between the DOCTYPE tag and the HTML tag, as demonstrated using the DesignScience MathPlayer ActiveX plugin.  Assigned (20050221)  None (candidate not yet proposed)    View
10115  CVE-2004-1687  Candidate  CRLF injection vulnerability in down.asp for Snitz Forums 2000 3.4.04 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the location parameter.  Assigned (20050221)  None (candidate not yet proposed)    View

Page 1219 of 20943, showing 5 records out of 104715 total, starting on record 6091, ending on 6095

Actions