CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11095 | CVE-2004-2669 | Candidate | Multiple SQL injection vulnerabilities in Land Down Under (LDU) v701 allow remote attackers to execute arbitrary SQL commands or obtain the installation path via parameters including (1) s, w, and d in users.php, (2) id in comments.php, (3) rusername in auth.php, or (4) h in plug.php. | Assigned (20061229) | None (candidate not yet proposed) | View | |
11094 | CVE-2004-2668 | Candidate | SQL injection vulnerability in Interchange before 4.8.9 allows remote attackers to execute arbitrary SQL commands via unknown vectors. | Assigned (20061229) | None (candidate not yet proposed) | View | |
11093 | CVE-2004-2667 | Candidate | Cross-site scripting (XSS) vulnerability in Lotus Domino 6.0.x before 6.0.4 and 6.5.x before 6.5.2 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | Assigned (20061229) | None (candidate not yet proposed) | View | |
11092 | CVE-2004-2666 | Candidate | Mantis before 20041016 provides a complete Issue History (Bug History) in the web interface regardless of view_history_threshold, which allows remote attackers to obtain sensitive information (private bug details) by visiting a bug"s web page. | Assigned (20061215) | None (candidate not yet proposed) | View | |
11091 | CVE-2004-2665 | Candidate | Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP-UX B.11.00, B.11.04, and B.11.11 before 20040628 allows local users to cause a denial of service via unspecified vectors. | Assigned (20060914) | None (candidate not yet proposed) | View |
Page 18725 of 20943, showing 5 records out of 104715 total, starting on record 93621, ending on 93625