CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10223  CVE-2004-1795  Candidate  Info Touch Surfnet kiosk allows local users to access the underlying filesystem via a "file://" URI.  Assigned (20050504)  None (candidate not yet proposed)    View
10479  CVE-2004-2053  Candidate  PHP remote file inclusion vulnerability in index.php in EasyIns Stadtportal 4 allows remote attackers to execute arbitrary PHP code via the site parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10224  CVE-2004-1796  Candidate  PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) config[incdir] parameter to hnmain.inc.php3.  Assigned (20050504)  None (candidate not yet proposed)    View
10480  CVE-2004-2054  Candidate  CRLF injection vulnerability in PhpBB 2.0.4 and 2.0.9 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via (1) the mode parameter to privmsg.php or (2) the redirect parameter to login.php.  Assigned (20050504)  None (candidate not yet proposed)    View
10225  CVE-2004-1797  Candidate  Cross-site scripting (XSS) vulnerability in search.php for FreznoShop 1.3.0 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1536 of 20943, showing 5 records out of 104715 total, starting on record 7676, ending on 7680

Actions