CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10319  CVE-2004-1892  Candidate  Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, allows remote attackers to execute arbitrary code via a long string.  Assigned (20050504)  None (candidate not yet proposed)    View
8016  CVE-2003-1192  Candidate  Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET request.  Assigned (20050504)  None (candidate not yet proposed)    View
10320  CVE-2004-1893  Candidate  Dreamweaver MX, when "Using Driver On Testing Server" or "Using DSN on Testing Server" is selected, uploads the mmhttpdb.asp script to the web site but does not require authentication, which allows remote attackers to obtain sensitive information and possibly execute arbitrary SQL commands via a direct request to mmhttpdb.asp.  Assigned (20050504)  None (candidate not yet proposed)    View
8017  CVE-2003-1193  Candidate  Multiple SQL injection vulnerabilities in the Portal DB (1) List of Values (LOVs), (2) Forms, (3) Hierarchy, and (4) XML components packages in Oracle Oracle9i Application Server 9.0.2.00 through 3.0.9.8.5 allow remote attackers to execute arbitrary SQL commands via the URL.  Assigned (20050504)  None (candidate not yet proposed)    View
10321  CVE-2004-1894  Candidate  TEXutil in ConTEXt, when executed with the --silent option, allows local users to overwrite arbitrary files via a symlink attack on texutil.log.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1498 of 20943, showing 5 records out of 104715 total, starting on record 7486, ending on 7490

Actions