CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6553  CVE-2002-2171  Candidate  Cross-site scripting (XSS) vulnerability in acWEB 1.8 and 1.14 allows remote attackers to insert arbitrary HTML and web script via a URL, possibly via a "%db" request in a URL.  Assigned (20051116)  None (candidate not yet proposed)    View
8089  CVE-2003-1265  Candidate  Netscape 7.0 and Mozilla 5.0 do not immediately delete messages in the trash folder when users select the "Empty Trash" option, which could allow local users to access deleted messages.  Assigned (20051116)  None (candidate not yet proposed)    View
14745  CVE-2005-3539  Candidate  Multiple eval injection vulnerabilities in HylaFAX 4.2.3 and earlier allow remote attackers to execute arbitrary commands via (1) the notify script in HylaFAX 4.2.0 to 4.2.3 and (2) crafted CallID parameters to the faxrcvd script in HylaFAX 4.2.2 and 4.2.3.  Assigned (20051116)  None (candidate not yet proposed)    View
6554  CVE-2002-2172  Candidate  Informed (1) Designer and (2) Filler 3.05 does not zero out newly allocated disk blocks as an encrypted file grows in size, which may allow attackers to obtain sensitive information.  Assigned (20051116)  None (candidate not yet proposed)    View
8090  CVE-2003-1266  Candidate  The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18735 of 20943, showing 5 records out of 104715 total, starting on record 93671, ending on 93675

Actions