CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10368  CVE-2004-1942  Candidate  The Solaris 9 patches 113579-02 through 113579-05, and 114342-02 through 114342-05, prevent ypserv and ypxfrd from properly restricting access to secure NIS maps, which allows local users to use ypcat or ypmatch to extract the contents of a secure map such as passwd.adjunct.byname.  Assigned (20050504)  None (candidate not yet proposed)    View
10369  CVE-2004-1943  Candidate  PHP remote file inclusion vulnerability in album_portal.php in phpBB modified by Przemo 1.8 allows remote attackers to execute arbitrary PHP code via the phpbb_root_path parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10370  CVE-2004-1944  Candidate  Eudora 6.1 and 6.0.3 for Windows allows remote attackers to cause a denial of service (crash) via a deeply nested multipart MIME message.  Assigned (20050504)  None (candidate not yet proposed)    View
10371  CVE-2004-1945  Candidate  Buffer overflow in Kinesphere eXchange POP3 allows remote attackers to execute arbitrary code via a long MAIL FROM field.  Assigned (20050504)  None (candidate not yet proposed)    View
10372  CVE-2004-1946  Candidate  Format string vulnerability in the PRINT_ERROR function in common.c for Cherokee Web Server 0.4.16 and earlier allows local users to execute arbitrary code via format string specifiers in the -C command line argument. NOTE: it is not clear whether this issue could be exploited remotely, or if Cherokee is running at escalated privileges. Therefore it might not be a vulnerability.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1510 of 20943, showing 5 records out of 104715 total, starting on record 7546, ending on 7550

Actions