CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10309  CVE-2004-1882  Candidate  Cross-site scripting (XSS) vulnerability in popuplargeimage.asp in CactuShop 5.x allows remote attackers to inject arbitrary web script or HTML via the strImageTag parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
8006  CVE-2003-1182  Candidate  Cross-site scripting (XSS) vulnerability in MPM Guestbook 1.2 allows remote attackers to inject arbitrary web script or HTML via the lng parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10310  CVE-2004-1883  Candidate  Multiple buffer overflows in Ipswitch WS_FTP Server 4.0.2 (1) allow remote authenticated users to execute arbitrary code by causing a large error string to be generated by the ALLO handler, or (2) may allow remote FTP administrators to execute arbitrary code by causing a long hostname or username to be inserted into a reply to a STAT command while a file is being transferred.  Assigned (20050504)  None (candidate not yet proposed)    View
8007  CVE-2003-1183  Candidate  The WebCache component in Oracle Files 9.0.3.1.0, 9.0.3.2.0, and 9.0.3.3.0 of Oracle Collaboration Suite Release 1 caches files despite the cacheability rules imposed by Oracle Files, which allows local users to gain access.  Assigned (20050504)  None (candidate not yet proposed)    View
10311  CVE-2004-1884  Candidate  Ipswitch WS_FTP Server 4.0.2 has a backdoor XXSESS_MGRYY username with a default password, which allows remote attackers to gain access.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1494 of 20943, showing 5 records out of 104715 total, starting on record 7466, ending on 7470

Actions