CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10870  CVE-2004-2444  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Jaws 0.3 allows remote attackers to inject arbitrary web script or HTML via the action parameter.  Assigned (20050820)  None (candidate not yet proposed)    View
10869  CVE-2004-2443  Candidate  Jaws 0.3 allows remote attackers to bypass authentication and via an HTTP request to admin.php with the logged cookie set to the MD5 hash of a null password, which is compared against the logged session variable by the logged_on function in application.php.  Assigned (20050820)  None (candidate not yet proposed)    View
10868  CVE-2004-2442  Candidate  Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system.  Assigned (20050820)  None (candidate not yet proposed)    View
10867  CVE-2004-2441  Candidate  Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related to a "potential security issue."  Assigned (20050820)  None (candidate not yet proposed)    View
10866  CVE-2004-2440  Candidate  Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users.  Assigned (20050820)  None (candidate not yet proposed)    View

Page 18770 of 20943, showing 5 records out of 104715 total, starting on record 93846, ending on 93850

Actions