CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15103  CVE-2005-3899  Candidate  The automatic update feature in Google Talk allows remote attackers to cause a denial of service (CPU and memory consumption) by poisoning a target"s DNS cache and causing a large update file to be sent, which consumes large amounts of CPU and memory during the signature verification, aka BenjiBug.  Assigned (20051129)  None (candidate not yet proposed)    View
11008  CVE-2004-2582  Candidate  Novell iChain 2.3 includes the build number in the VIA line of the proxy server"s HTTP headers, which allows remote attackers to obtain sensitive information.  Assigned (20051128)  None (candidate not yet proposed)    View
11009  CVE-2004-2583  Candidate  SMTP service in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service (CPU consumption) via a large number of simultaneous open connections to TCP port 25.  Assigned (20051128)  None (candidate not yet proposed)    View
11010  CVE-2004-2584  Candidate  frmAddfolder.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote authenticated users to create a folder that SmarterMail cannot delete or rename via a folder name with a null byte ("%00"). NOTE: it is not clear whether this issue poses a vulnerability.  Assigned (20051128)  None (candidate not yet proposed)    View
11011  CVE-2004-2585  Candidate  Cross-site scripting (XSS) vulnerability in frmCompose.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to inject arbitrary web script or HTML via Javascript to the "check spelling" feature in the compose area.  Assigned (20051128)  None (candidate not yet proposed)    View

Page 18664 of 20943, showing 5 records out of 104715 total, starting on record 93316, ending on 93320

Actions