CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6347  CVE-2002-1965  Candidate  Cross-site scripting (XSS) vulnerability in Errors.gsl in Imatix Xitami 2.5b4 and 2.5b5 allows remote attackers to inject arbitrary web script or HTML via the (1) Javascript events, as demonstrated via an onerror event in an IMG SRC tag or (2) User-Agent field in an HTTP GET request.  Assigned (20050629)  None (candidate not yet proposed)    View
6348  CVE-2002-1966  Candidate  Directory traversal vulnerability in magiccard.cgi in My Postcards Platinum 5.0 and 6.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter.  Assigned (20050629)  None (candidate not yet proposed)    View
13260  CVE-2005-2054  Candidate  Unknown vulnerability in RealPlayer 10 and 10.5 (6.0.12.1040-1069) and RealOne Player v1 and v2 allows remote attackers to overwrite arbitrary files or execute arbitrary ActiveX controls via a crafted MP3 file.  Assigned (20050629)  None (candidate not yet proposed)    View
6349  CVE-2002-1967  Candidate  Buffer overflow in XiRCON 1.0 Beta 4 allows remote attackers to cause a denial of service (disconnect) via a long (1) ctcp, (2) primsg, (3) msg, or (4) notice command.  Assigned (20050629)  None (candidate not yet proposed)    View
13261  CVE-2005-2055  Candidate  RealPlayer 8, 10, 10.5 (6.0.12.1040-1069), and Enterprise and RealOne Player v1 and v2 allows remote malicious web server to create an arbitrary HTML file that executes an RM file via "default settings of earlier Internet Explorer browsers".  Assigned (20050629)  None (candidate not yet proposed)    View

Page 1746 of 20943, showing 5 records out of 104715 total, starting on record 8726, ending on 8730

Actions