CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8906  CVE-2004-0478  Candidate  Unknown versions of Mozilla allow remote attackers to cause a denial of service (high CPU/RAM consumption) using Javascript with an infinite loop that continues to add input to a form, possibly as the result of inserting control characters, as demonstrated using an embedded ctrl-U.  Assigned (20040517)  None (candidate not yet proposed)    View
8907  CVE-2004-0479  Candidate  Internet Explorer 6 allows remote attackers to cause a denial of service (crash) via Javascript that creates a new popup window and disables the imagetoolbar functionality with a META tag, which triggers a null dereference.  Assigned (20040517)  None (candidate not yet proposed)    View
8908  CVE-2004-0480  Candidate  Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that uses a UNC network share pathname to provide an alternate notes.ini configuration file to notes.exe.  Assigned (20040518)  None (candidate not yet proposed)    View
8909  CVE-2004-0481  Candidate  The logging feature in kcms_configure in the KCMS package on Solaris 8 and 9, and possibly other versions, allows local users to corrupt arbitrary files via a symlink attack on the KCS_ClogFile file.  Assigned (20040518)  None (candidate not yet proposed)    View
8910  CVE-2004-0482  Candidate  Multiple integer overflows in (1) procfs_cmdline.c, (2) procfs_fpregs.c, (3) procfs_linux.c, (4) procfs_regs.c, (5) procfs_status.c, and (6) procfs_subr.c in procfs for OpenBSD 3.5 and earlier allow local users to read sensitive kernel memory and possibly perform other unauthorized activities.  Assigned (20040518)  None (candidate not yet proposed)    View

Page 1782 of 20943, showing 5 records out of 104715 total, starting on record 8906, ending on 8910

Actions