CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11150  CVE-2004-2724  Candidate  LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU consumption) via a username beginning with percent (%) followed by a null character.  Assigned (20071006)  None (candidate not yet proposed)    View
11149  CVE-2004-2723  Candidate  NessusWX 1.4.4 stores account passwords in plaintext in .session files, which allows local users to obtain passwords.  Assigned (20071006)  None (candidate not yet proposed)    View
11148  CVE-2004-2722  Candidate  ** DISPUTED ** Nessus 2.0.10a stores account passwords in plaintext in .nessusrc files, which allows local users to obtain passwords. NOTE: the original researcher reports that the vendor has disputed this issue.  Assigned (20071006)  None (candidate not yet proposed)    View
11147  CVE-2004-2721  Candidate  The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the "p" variable might not be prime, which allows remote attackers to determine the private key and decrypt messages.  Assigned (20071006)  None (candidate not yet proposed)    View
11146  CVE-2004-2720  Candidate  Cross-site scripting (XSS) vulnerability in register.asp in Snitz Forums 2000 3.4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via javascript events in the Email parameter.  Assigned (20071006)  None (candidate not yet proposed)    View

Page 18714 of 20943, showing 5 records out of 104715 total, starting on record 93566, ending on 93570

Actions