CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11100 | CVE-2004-2674 | Candidate | Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbitrary files via ".." sequences in the SITE UNZIP argument. | Assigned (20070109) | None (candidate not yet proposed) | View | |
11099 | CVE-2004-2673 | Candidate | Multiple buffer overflows in ArGoSoft FTP Server before 1.4.1.6 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a SITE ZIP command with a long first or second argument, or (2) a SITE COPY with a long argument. | Assigned (20070109) | None (candidate not yet proposed) | View | |
11098 | CVE-2004-2672 | Candidate | Unspecified vulnerability in ArGoSoft FTP server before 1.4.2.2 allows attackers to upload .lnk files via unknown vectors. | Assigned (20070109) | None (candidate not yet proposed) | View | |
11097 | CVE-2004-2671 | Candidate | mod.php in eNdonesia 8.3 allows remote attackers to obtain sensitive information via certain direct requests, and certain requests with invalid parameter values, which reveal the path in various error messages, as demonstrated by the (1) mod and (2) cid parameters. | Assigned (20070104) | None (candidate not yet proposed) | View | |
11096 | CVE-2004-2670 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in mod.php in eNdonesia 8.3 allow remote attackers to inject arbitrary web script or HTML via (1) the mod parameter in a viewcat operation or (2) the query parameter in a search operation in the publisher module. | Assigned (20070104) | None (candidate not yet proposed) | View |
Page 18724 of 20943, showing 5 records out of 104715 total, starting on record 93616, ending on 93620