CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10294  CVE-2004-1867  Candidate  Cross-site scripting (XSS) vulnerability in guest.cgi in Fresh Guest Book allows remote attackers to inject arbitrary web script or HTML via the Name field.  Assigned (20050504)  None (candidate not yet proposed)    View
7991  CVE-2003-1167  Candidate  misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which allows local users to elevate their privileges by modifying the PATH variable to reference a malicious killall program.  Assigned (20050504)  None (candidate not yet proposed)    View
10295  CVE-2004-1868  Candidate  Stack-based buffer overflow in WinSig.exe in eSignal 7.5 and 7.6 allows remote attackers to execute arbitrary code via a long STREAMQUOTE tag.  Assigned (20050504)  None (candidate not yet proposed)    View
7992  CVE-2003-1168  Candidate  HTTP Commander 4.0 allows remote attackers to obtain sensitive information via an HTTP request that contains a . (dot) in the file parameter, which reveals the installation path in an error message.  Assigned (20050504)  None (candidate not yet proposed)    View
10296  CVE-2004-1869  Candidate  Etherlords I 1.07 and earlier and Etherlords II 1.03 and earlier allows remote attackers to cause a denial of service (crash) by sending a packet that specifies the size for the next packet, then sending a larger packet than specified, which causes Etherlords to read unallocated memory.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1488 of 20943, showing 5 records out of 104715 total, starting on record 7436, ending on 7440

Actions