CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10810  CVE-2004-2384  Candidate  NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim"s player to crash when the file is opened from the command line.  Assigned (20050816)  None (candidate not yet proposed)    View
10809  CVE-2004-2383  Candidate  Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to bypass cross-frame scripting restrictions and capture keyboard events from other domains via an HTML document with Javascript that is outside a frameset that includes the target domain, then forcing the frameset to maintain focus. NOTE: the discloser claimed that the vendor does not categorize this as a vulnerability, but it can be used in a spoofing scenario; the discloser provides alternate scenarios. Spoofing scenarios are currently included in CVE.  Assigned (20050816)  None (candidate not yet proposed)    View
10808  CVE-2004-2382  Candidate  The PerfectNav plugin for Microsoft Internet Explorer allows remote attackers to cause a denial of service (browser crash) via a malformed URL such as "?".  Assigned (20050816)  None (candidate not yet proposed)    View
10807  CVE-2004-2381  Candidate  HttpRequest.java in Jetty HTTP Server before 4.2.19 allows remote attackers to cause denial of service (memory usage and application crash) via HTTP requests with a large Content-Length.  Assigned (20050816)  None (candidate not yet proposed)    View
10806  CVE-2004-2380  Candidate  Directory traversal vulnerability in postfile.exe for Twilight Utilities Web Server 2.0.0.0 allows remote attackers to write arbitrary files via a .. (dot dot) in the attfile parameter.  Assigned (20050816)  None (candidate not yet proposed)    View

Page 18782 of 20943, showing 5 records out of 104715 total, starting on record 93906, ending on 93910

Actions