CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10243  CVE-2004-1816  Candidate  Unknown vulnerability in Sun Java System Application Server 7.0 Update 2 and earlier, when a SOAP web service expects an array of objects as an argument, allows remote attackers to cause a denial of service (memory consumption).  Assigned (20050504)  None (candidate not yet proposed)    View
10244  CVE-2004-1817  Candidate  Cross-site scripting (XSS) vulnerability in modules.php in Php-Nuke 7.1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) Your Name field, (2) e-mail field, (3) nicname field, (4) fname parameter, (5) ratenum parameter, or (6) search field.  Assigned (20050504)  None (candidate not yet proposed)    View
10245  CVE-2004-1818  Candidate  Cross-site scripting (XSS) vulnerability in nmimage.php in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to execute arbitrary script as other users by injecting arbitrary script into the z parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10246  CVE-2004-1819  Candidate  4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to obtain sensitive information via a direct request to displaycategory.php, which reveals the path in an error message.  Assigned (20050504)  None (candidate not yet proposed)    View
10247  CVE-2004-1820  Candidate  PHP remote file inclusion vulnerability in displaycategory.php in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to execute arbitrary PHP code by modifying the basepath parameter to reference a URL on a remote web server that contains fileFunctions.php.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1471 of 20943, showing 5 records out of 104715 total, starting on record 7351, ending on 7355

Actions