CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11260 | CVE-2005-0054 | Candidate | Internet Explorer 5.01, 5.5, and 6 allows remote attackers to spoof a less restrictive security zone and execute arbitrary code via an HTML page containing URLs that contain hostnames that have been double hex encoded, which are decoded twice to generate a malicious hostname, aka the "URL Decoding Zone Spoofing Vulnerability." | Assigned (20050111) | None (candidate not yet proposed) | View | |
11259 | CVE-2005-0053 | Candidate | Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability." | Assigned (20050111) | None (candidate not yet proposed) | View | |
11258 | CVE-2005-0052 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20050111) | None (candidate not yet proposed) | View | |
11257 | CVE-2005-0051 | Candidate | The Server service (srvsvc.dll) in Windows XP SP1 and SP2 allows remote attackers to obtain sensitive information (users who are accessing resources) via an anonymous logon using a named pipe, which is not properly authenticated, aka the "Named Pipe Vulnerability." | Assigned (20050111) | None (candidate not yet proposed) | View | |
11256 | CVE-2005-0050 | Candidate | The License Logging service for Windows NT Server, Windows 2000 Server, and Windows Server 2003 does not properly validate the length of messages, which leads to an "unchecked buffer" and allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, aka the "License Logging Service Vulnerability." | Assigned (20050111) | None (candidate not yet proposed) | View |
Page 18692 of 20943, showing 5 records out of 104715 total, starting on record 93456, ending on 93460