CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8722  CVE-2004-0294  Candidate  YaBB 1 SP 1.3.1 displays different error messages when a user exists or not, which makes it easier for remote attackers to identify valid users and conduct a brute force password guessing attack.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8723  CVE-2004-0295  Candidate  TsFtpSrv.exe in Broker FTP 6.1.0.0 allows remote attackers to cause a denial of service (CPU consumption) via an open idle connection.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8726  CVE-2004-0298  Candidate  CesarFTP 0.99e allows remote attackers to cause a denial of service (CPU consumption) via a long RETR parameter.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8727  CVE-2004-0299  Candidate  Buffer overflow in smallftpd 0.99 allows local users to cause a denial of service (crash) via an FTP request with a large number of "/" (slash) characters.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8728  CVE-2004-0300  Candidate  SQL injection vulnerability in Online Store Kit 3.0 allows remote attackers to inject arbitrary SQL and gain unauthorized access via (1) the cat parameter in shop.php, (2) the id parameter in more.php, (3) the cat_manufacturer parameter in shop_by_brand.php, or (4) the id parameter in listing.php.  Modified (20051204)  NOOP(4) Armstrong, Cole, Cox, Wall    View

Page 16 of 20943, showing 5 records out of 104715 total, starting on record 76, ending on 80

Actions