CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11055  CVE-2004-2629  Candidate  Multiple vulnerabilities in the H.323 protocol implementation for First Virtual Communications Click to Meet Express (when used with H.323 conferencing endpoints), Click to Meet Premier, Conference Server, and V-Gate allow remote attackers to cause a denial of service, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.  Assigned (20051204)  None (candidate not yet proposed)    View
11054  CVE-2004-2628  Candidate  Multiple directory traversal vulnerabilities in thttpd 2.07 beta 0.4, when running on Windows, allow remote attackers to read arbitrary files via a URL that contains (1) a hex-encoded backslash dot-dot sequence ("%5C..") or (2) a drive letter (such as "C:").  Assigned (20051204)  None (candidate not yet proposed)    View
11053  CVE-2004-2627  Candidate  Java 2 Micro Edition (J2ME) does not properly validate bytecode, which allows remote attackers to escape the Kilobyte Virtual Machine (KVM) sandbox and execute arbitrary code.  Assigned (20051204)  None (candidate not yet proposed)    View
11052  CVE-2004-2626  Candidate  GUI overlay vulnerability in the Java API in Siemens S55 cellular phones allows remote attackers to send unauthorized SMS messages by overlaying a confirmation message with a malicious message.  Assigned (20051204)  None (candidate not yet proposed)    View
11051  CVE-2004-2625  Candidate  Cross-site scripting (XSS) vulnerability in Outblaze Email allows remote attackers to inject arbitrary web script or HTML via Javascript in an attribute of an IMG tag.  Assigned (20051204)  None (candidate not yet proposed)    View

Page 18733 of 20943, showing 5 records out of 104715 total, starting on record 93661, ending on 93665

Actions