CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6553 | CVE-2002-2171 | Candidate | Cross-site scripting (XSS) vulnerability in acWEB 1.8 and 1.14 allows remote attackers to insert arbitrary HTML and web script via a URL, possibly via a "%db" request in a URL. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8089 | CVE-2003-1265 | Candidate | Netscape 7.0 and Mozilla 5.0 do not immediately delete messages in the trash folder when users select the "Empty Trash" option, which could allow local users to access deleted messages. | Assigned (20051116) | None (candidate not yet proposed) | View | |
14745 | CVE-2005-3539 | Candidate | Multiple eval injection vulnerabilities in HylaFAX 4.2.3 and earlier allow remote attackers to execute arbitrary commands via (1) the notify script in HylaFAX 4.2.0 to 4.2.3 and (2) crafted CallID parameters to the faxrcvd script in HylaFAX 4.2.2 and 4.2.3. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6554 | CVE-2002-2172 | Candidate | Informed (1) Designer and (2) Filler 3.05 does not zero out newly allocated disk blocks as an encrypted file grows in size, which may allow attackers to obtain sensitive information. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8090 | CVE-2003-1266 | Candidate | The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data. | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 18735 of 20943, showing 5 records out of 104715 total, starting on record 93671, ending on 93675