CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11170 | CVE-2004-2744 | Candidate | Unspecified vulnerability in Tincan Limited PHPlist before 2.8.12 has unknown impact and attack vectors, related to a "security update release." | Assigned (20071008) | None (candidate not yet proposed) | View | |
11169 | CVE-2004-2743 | Candidate | upload.cgi in Mega Upload Progress Bar before 1.45 allows remote attackers to copy or overwrite arbitrary files via unspecified parameters related to names of uploaded files. | Assigned (20071008) | None (candidate not yet proposed) | View | |
11168 | CVE-2004-2742 | Candidate | Cross-site scripting (XSS) vulnerability in the report viewer in Crystal Enterprise 8.5, 9, and 10 allows remote attackers to inject arbitrary web script or HTML via script in the URL to a report (RPT) file. | Assigned (20071008) | None (candidate not yet proposed) | View | |
11167 | CVE-2004-2741 | Candidate | Cross-site scripting (XSS) vulnerability in the "help window" (help.php) in Horde Application Framework 2.2.6 allows remote attackers to inject arbitrary web script or HTML via the (1) module, (2) topic, or (3) module parameters. | Assigned (20071008) | None (candidate not yet proposed) | View | |
11166 | CVE-2004-2740 | Candidate | PHP remote file inclusion vulnerability in authform.inc.php in PHProjekt 4.2.3 and earlier allows remote attackers to include arbitrary PHP code via a URL in the path_pre parameter. | Assigned (20071008) | None (candidate not yet proposed) | View |
Page 18710 of 20943, showing 5 records out of 104715 total, starting on record 93546, ending on 93550