CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10491 | CVE-2004-2065 | Candidate | DansGuardian 2.8 and earlier allows remote attackers to bypass the extension filtering rule via a hex encoded extension or . in the filename. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10236 | CVE-2004-1809 | Candidate | Cross-site scripting (XSS) vulnerability in phpBB 2.0.6d and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) postdays parameter to viewtopic.php or (2) topicdays parameter to viewforum.php. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10492 | CVE-2004-2066 | Candidate | SQL injection vulnerability in session.php in LinPHA 0.9.4 allows remote attackers to execute arbitrary SQL code and bypass authentication via the (1) linpha_userid or (2) linpha_password cookies. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10237 | CVE-2004-1810 | Candidate | The Javascript engine in Opera 7.23 allows remote attackers to cause a denial of service (crash) by creating a new Array object with a large size value, then writing into that array. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10493 | CVE-2004-2067 | Candidate | SQL injection vulnerability in controlpanel.php in Jaws Framework and Content Management System 0.4 allows remote attackers to execute arbitrary SQL and bypass authentication via the (1) user, (2) password, or (3) crypted_password parameters. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 1541 of 20943, showing 5 records out of 104715 total, starting on record 7701, ending on 7705