CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10553  CVE-2004-2127  Candidate  Directory traversal vulnerability in Web Blog 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the file variable.  Assigned (20050527)  None (candidate not yet proposed)    View
10554  CVE-2004-2128  Candidate  Cross-site scripting (XSS) vulnerability in BRS WebWeaver 1.07 allows remote attackers to execute arbitrary script as other users via the query string to ISAPISkeleton.dll.  Assigned (20050527)  None (candidate not yet proposed)    View
10555  CVE-2004-2129  Candidate  SurfNOW 2.2 allows remote attackers to cause a denial of service (crash) via a series of long HTTP GET requests, possibly triggering a buffer overflow.  Assigned (20050527)  None (candidate not yet proposed)    View
10556  CVE-2004-2130  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in privmsg.php in phpBB 2.0.6 allow remote attackers to execute arbitrary script or HTML via the (1) folder or (2) mode variables.  Assigned (20050527)  None (candidate not yet proposed)    View
10557  CVE-2004-2131  Candidate  Stack-based buffer overflow in ontape for IBM Informix Dynamic Server (IDS) 9.40.xC3 and earlier allows local users, with DSA privileges, to execute arbitrary code via a long ONCONFIG environment variable.  Assigned (20050527)  None (candidate not yet proposed)    View

Page 1618 of 20943, showing 5 records out of 104715 total, starting on record 8086, ending on 8090

Actions