CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10223 | CVE-2004-1795 | Candidate | Info Touch Surfnet kiosk allows local users to access the underlying filesystem via a "file://" URI. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10479 | CVE-2004-2053 | Candidate | PHP remote file inclusion vulnerability in index.php in EasyIns Stadtportal 4 allows remote attackers to execute arbitrary PHP code via the site parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10224 | CVE-2004-1796 | Candidate | PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) config[incdir] parameter to hnmain.inc.php3. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10480 | CVE-2004-2054 | Candidate | CRLF injection vulnerability in PhpBB 2.0.4 and 2.0.9 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via (1) the mode parameter to privmsg.php or (2) the redirect parameter to login.php. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10225 | CVE-2004-1797 | Candidate | Cross-site scripting (XSS) vulnerability in search.php for FreznoShop 1.3.0 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 1536 of 20943, showing 5 records out of 104715 total, starting on record 7676, ending on 7680