CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11150 | CVE-2004-2724 | Candidate | LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU consumption) via a username beginning with percent (%) followed by a null character. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11149 | CVE-2004-2723 | Candidate | NessusWX 1.4.4 stores account passwords in plaintext in .session files, which allows local users to obtain passwords. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11148 | CVE-2004-2722 | Candidate | ** DISPUTED ** Nessus 2.0.10a stores account passwords in plaintext in .nessusrc files, which allows local users to obtain passwords. NOTE: the original researcher reports that the vendor has disputed this issue. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11147 | CVE-2004-2721 | Candidate | The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the "p" variable might not be prime, which allows remote attackers to determine the private key and decrypt messages. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11146 | CVE-2004-2720 | Candidate | Cross-site scripting (XSS) vulnerability in register.asp in Snitz Forums 2000 3.4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via javascript events in the Email parameter. | Assigned (20071006) | None (candidate not yet proposed) | View |
Page 18714 of 20943, showing 5 records out of 104715 total, starting on record 93566, ending on 93570