CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10920  CVE-2004-2494  Candidate  Cross-site scripting (XSS) vulnerability in _error in Ability Mail Server 1.18 allows remote attackers to inject arbitrary web script or HTML via the erromsg parameter.  Assigned (20051025)  None (candidate not yet proposed)    View
10919  CVE-2004-2493  Candidate  Directory traversal vulnerability in Groupmax World Wide Web (GmaxWWW) 2 and 3, and Desktop 5, 6, and Desktop for Jichitai allows remote authenticated users to read arbitrary .html files via the template name parameter.  Assigned (20051025)  None (candidate not yet proposed)    View
10918  CVE-2004-2492  Candidate  Cross-site scripting (XSS) vulnerability in Groupmax World Wide Web (GmaxWWW) Desktop 5, 6, and Desktop for Jichitai 6, allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter.  Assigned (20051025)  None (candidate not yet proposed)    View
10917  CVE-2004-2491  Candidate  A race condition in Opera web browser 7.53 Build 3850 causes Opera to fill in the address bar before the page has been loaded, which allows remote attackers to spoof the URL in the address bar via the window.open and location.replace HTML parameters, which facilitates phishing attacks.  Assigned (20051025)  None (candidate not yet proposed)    View
10916  CVE-2004-2490  Candidate  Buffer overflow in IBM Informix Dynamic Server (IDS) 9.40.xC1 and 9.40.xC2 allows local users to execute arbitrary code via a long GL_PATH environment variable.  Assigned (20051025)  None (candidate not yet proposed)    View

Page 18760 of 20943, showing 5 records out of 104715 total, starting on record 93796, ending on 93800

Actions