CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10870 | CVE-2004-2444 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Jaws 0.3 allows remote attackers to inject arbitrary web script or HTML via the action parameter. | Assigned (20050820) | None (candidate not yet proposed) | View | |
10869 | CVE-2004-2443 | Candidate | Jaws 0.3 allows remote attackers to bypass authentication and via an HTTP request to admin.php with the logged cookie set to the MD5 hash of a null password, which is compared against the logged session variable by the logged_on function in application.php. | Assigned (20050820) | None (candidate not yet proposed) | View | |
10868 | CVE-2004-2442 | Candidate | Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system. | Assigned (20050820) | None (candidate not yet proposed) | View | |
10867 | CVE-2004-2441 | Candidate | Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related to a "potential security issue." | Assigned (20050820) | None (candidate not yet proposed) | View | |
10866 | CVE-2004-2440 | Candidate | Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users. | Assigned (20050820) | None (candidate not yet proposed) | View |
Page 18770 of 20943, showing 5 records out of 104715 total, starting on record 93846, ending on 93850