CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13380  CVE-2005-2174  Candidate  Bugzilla 2.17.x, 2.18 before 2.18.2, 2.19.x, and 2.20 before 2.20rc1 inserts a bug into the database before it is marked private, which introduces a race condition and allows attackers to access information about the bug via buglist.cgi before MySQL replication is complete.  Assigned (20050708)  None (candidate not yet proposed)    View
13381  CVE-2005-2175  Candidate  The web interface for Lotus Notes mail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.  Assigned (20050709)  None (candidate not yet proposed)    View
13382  CVE-2005-2176  Candidate  Novell NetMail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.  Assigned (20050709)  None (candidate not yet proposed)    View
13383  CVE-2005-2177  Candidate  Net-SNMP 5.0.x before 5.0.10.2, 5.2.x before 5.2.1.2, and 5.1.3, when net-snmp is using stream sockets such as TCP, allows remote attackers to cause a denial of service (daemon hang and CPU consumption) via a TCP packet of length 1, which triggers an infinite loop.  Assigned (20050710)  None (candidate not yet proposed)    View
13384  CVE-2005-2178  Candidate  probe.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the olddat parameter. NOTE: it is unclear which product or vendor this program is associated with, if any.  Assigned (20050710)  None (candidate not yet proposed)    View

Page 1778 of 20943, showing 5 records out of 104715 total, starting on record 8886, ending on 8890

Actions