CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10121  CVE-2004-1693  Candidate  PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code.  Assigned (20050221)  None (candidate not yet proposed)    View
10122  CVE-2004-1694  Candidate  Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access.  Assigned (20050221)  None (candidate not yet proposed)    View
10123  CVE-2004-1695  Candidate  EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administration feature via a URL that contains an extra leading / (slash).  Assigned (20050221)  None (candidate not yet proposed)    View
10124  CVE-2004-1696  Candidate  EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to cause a denial of service (application crash) via a sequence of carriage returns sent to TCP port 66.  Assigned (20050221)  None (candidate not yet proposed)    View
10125  CVE-2004-1697  Candidate  The "Forgot your Password" link in Computer Associates (CA) Unicenter Management Portal 2.0 and 3.1 displays different error messages for users that exist and users that do not exist, which could allow remote attackers to guess valid usernames.  Assigned (20050221)  None (candidate not yet proposed)    View

Page 1221 of 20943, showing 5 records out of 104715 total, starting on record 6101, ending on 6105

Actions