CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11095  CVE-2004-2669  Candidate  Multiple SQL injection vulnerabilities in Land Down Under (LDU) v701 allow remote attackers to execute arbitrary SQL commands or obtain the installation path via parameters including (1) s, w, and d in users.php, (2) id in comments.php, (3) rusername in auth.php, or (4) h in plug.php.  Assigned (20061229)  None (candidate not yet proposed)    View
11094  CVE-2004-2668  Candidate  SQL injection vulnerability in Interchange before 4.8.9 allows remote attackers to execute arbitrary SQL commands via unknown vectors.  Assigned (20061229)  None (candidate not yet proposed)    View
11093  CVE-2004-2667  Candidate  Cross-site scripting (XSS) vulnerability in Lotus Domino 6.0.x before 6.0.4 and 6.5.x before 6.5.2 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors.  Assigned (20061229)  None (candidate not yet proposed)    View
11092  CVE-2004-2666  Candidate  Mantis before 20041016 provides a complete Issue History (Bug History) in the web interface regardless of view_history_threshold, which allows remote attackers to obtain sensitive information (private bug details) by visiting a bug"s web page.  Assigned (20061215)  None (candidate not yet proposed)    View
11091  CVE-2004-2665  Candidate  Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP-UX B.11.00, B.11.04, and B.11.11 before 20040628 allows local users to cause a denial of service via unspecified vectors.  Assigned (20060914)  None (candidate not yet proposed)    View

Page 18725 of 20943, showing 5 records out of 104715 total, starting on record 93621, ending on 93625

Actions