CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11100  CVE-2004-2674  Candidate  Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbitrary files via ".." sequences in the SITE UNZIP argument.  Assigned (20070109)  None (candidate not yet proposed)    View
11099  CVE-2004-2673  Candidate  Multiple buffer overflows in ArGoSoft FTP Server before 1.4.1.6 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a SITE ZIP command with a long first or second argument, or (2) a SITE COPY with a long argument.  Assigned (20070109)  None (candidate not yet proposed)    View
11098  CVE-2004-2672  Candidate  Unspecified vulnerability in ArGoSoft FTP server before 1.4.2.2 allows attackers to upload .lnk files via unknown vectors.  Assigned (20070109)  None (candidate not yet proposed)    View
11097  CVE-2004-2671  Candidate  mod.php in eNdonesia 8.3 allows remote attackers to obtain sensitive information via certain direct requests, and certain requests with invalid parameter values, which reveal the path in various error messages, as demonstrated by the (1) mod and (2) cid parameters.  Assigned (20070104)  None (candidate not yet proposed)    View
11096  CVE-2004-2670  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in mod.php in eNdonesia 8.3 allow remote attackers to inject arbitrary web script or HTML via (1) the mod parameter in a viewcat operation or (2) the query parameter in a search operation in the publisher module.  Assigned (20070104)  None (candidate not yet proposed)    View

Page 18724 of 20943, showing 5 records out of 104715 total, starting on record 93616, ending on 93620

Actions