CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10440  CVE-2004-2014  Candidate  Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the name of the file being downloaded.  Assigned (20050504)  None (candidate not yet proposed)    View
10441  CVE-2004-2015  Candidate  Cross-site scripting (XSS) vulnerability in WebCT Campus Edition allows remote attackers to inject arbitrary HTML or web script via (1) iframe, (2) img, or (3) object tags.  Assigned (20050504)  None (candidate not yet proposed)    View
10442  CVE-2004-2016  Candidate  Stack-based buffer overflow in the HTTP server in NetChat 7.3 and earlier allows remote attackers to execute arbitrary code via a long GET request.  Assigned (20050504)  None (candidate not yet proposed)    View
10443  CVE-2004-2017  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Turbo Traffic Trader C (TTT-C) 1.0 allow remote attackers to inject arbitrary HTML or web script, as demonstrated via (1) the link parameter to ttt-out, (2) the X-Forwarded-For header in a GET request to ttt-in, (3) the Referer header in a GET request to ttt-in, or the (4) site name or (5) site URL fields in the main control panel.  Assigned (20050504)  None (candidate not yet proposed)    View
10444  CVE-2004-2018  Candidate  PHP remote file inclusion vulnerability in index.php in Php-Nuke 6.x through 7.3 allows remote attackers to execute arbitrary PHP code by modifying the modpath parameter to reference a URL on a remote web server that contains the code.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1525 of 20943, showing 5 records out of 104715 total, starting on record 7621, ending on 7625

Actions