CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11029 | CVE-2004-2603 | Candidate | Cross-site scripting (XSS) vulnerability in the Search module in UberTec Help Center Live (HCL) allows remote attackers to inject arbitrary web script or HTML via the find parameter to index.php. | Assigned (20051129) | None (candidate not yet proposed) | View | |
11030 | CVE-2004-2604 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in PHProxy allows remote attackers to inject arbitrary web script or HTML via the error parameter. | Assigned (20051129) | None (candidate not yet proposed) | View | |
11031 | CVE-2004-2605 | Candidate | aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Generation file and (2) certain PNG image files. | Assigned (20051129) | None (candidate not yet proposed) | View | |
11032 | CVE-2004-2606 | Candidate | The Web interface in Linksys WRT54G 2.02.7 and BEFSR41 version 3, with the firewall disabled, allows remote attackers to attempt to login to an administration web page, even when the configuration specifies that remote administration is disabled. | Assigned (20051129) | None (candidate not yet proposed) | View | |
15063 | CVE-2005-3859 | Candidate | PHP remote file inclusion vulnerability in q-news.php in Q-News 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the id parameter. | Assigned (20051129) | None (candidate not yet proposed) | View |
Page 18655 of 20943, showing 5 records out of 104715 total, starting on record 93271, ending on 93275