CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11979  CVE-2005-0773  Candidate  Stack-based buffer overflow in VERITAS Backup Exec Remote Agent 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 for Netware allows remote attackers to execute arbitrary code via a CONNECT_CLIENT_AUTH request with authentication method type 3 (Windows credentials) and a long password argument.  Assigned (20050318)  None (candidate not yet proposed)    View
7955  CVE-2003-1131  Candidate  PHP remote file inclusion vulnerability in index.php in KnowledgeBuilder, referred to as KnowledgeBase, allows remote attackers to execute arbitrary PHP code by modifying the page parameter to reference a URL on a remote web server that contains the code.  Assigned (20050320)  None (candidate not yet proposed)    View
5985  CVE-2002-1601  Candidate  The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.  Assigned (20050320)  None (candidate not yet proposed)    View
4219  CVE-2001-1416  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags.  Assigned (20050320)  None (candidate not yet proposed)    View
4220  CVE-2001-1417  Candidate  AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application hang or crash) via a buddy icon GIF file whose length and width values are larger than the actual image data.  Assigned (20050320)  None (candidate not yet proposed)    View

Page 1305 of 20943, showing 5 records out of 104715 total, starting on record 6521, ending on 6525

Actions