CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11195  CVE-2004-2769  Candidate  Cerberus FTP Server before 4.0.3.0 allows remote authenticated users to list hidden files, even when the "Display hidden files" option is enabled, via the (1) MLSD or (2) MLST commands.  Assigned (20100702)  None (candidate not yet proposed)    View
11194  CVE-2004-2768  Candidate  dpkg 1.9.21 does not properly reset the metadata of a file during replacement of the file in a package upgrade, which might allow local users to gain privileges by creating a hard link to a vulnerable (1) setuid file, (2) setgid file, or (3) device, a related issue to CVE-2010-2059.  Assigned (20100608)  None (candidate not yet proposed)    View
11193  CVE-2004-2767  Candidate  NWFTPD.nlm before 5.04.25 in the FTP server in Novell NetWare does not promptly close DS sessions, which allows remote attackers to cause a denial of service (connection slot exhaustion) by establishing many FTP sessions that persist for the lifetime of a DS session.  Assigned (20100405)  None (candidate not yet proposed)    View
11192  CVE-2004-2766  Candidate  Webmail in Sun ONE Messaging Server 6.1 and iPlanet Messaging Server 5.2 before 5.2hf2.02 allows remote attackers to obtain unspecified "access" to e-mail via a crafted e-mail message, related to a "session hijacking" issue, a different vulnerability than CVE-2005-2022 and CVE-2006-5486.  Assigned (20100128)  None (candidate not yet proposed)    View
11191  CVE-2004-2765  Candidate  Cross-site scripting (XSS) vulnerability in Webmail in Sun ONE Messaging Server 6.1 and iPlanet Messaging Server 5.2 before 5.2hf2.02, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via a crafted e-mail message, a different vulnerability than CVE-2005-2022 and CVE-2006-5486.  Assigned (20100128)  None (candidate not yet proposed)    View

Page 18705 of 20943, showing 5 records out of 104715 total, starting on record 93521, ending on 93525

Actions