CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10695  CVE-2004-2269  Candidate  Stack-based buffer overflow in pads.c in Passive Asset Detection System (Pads) might allow local users to execute arbitrary code via a long report file name argument. NOTE: since Pads is not normally installed setuid, this may not be a vulnerability.  Assigned (20050719)  None (candidate not yet proposed)    View
10694  CVE-2004-2268  Candidate  PimenGest2 before 1.1.1 allows remote attackers to obtain the database password via debug information in rowLatex.inc.php.  Assigned (20050719)  None (candidate not yet proposed)    View
10693  CVE-2004-2267  Candidate  Cross-site scripting (XSS) vulnerability in Ansel 2.1 and earlier allows remote attackers to inject arbitrary HTML or web script via the album name.  Assigned (20050719)  None (candidate not yet proposed)    View
10692  CVE-2004-2266  Candidate  SQL injection vulnerability in Ansel 2.1 and earlier allows remote attackers to modify SQL statements via the image parameter.  Assigned (20050719)  None (candidate not yet proposed)    View
10691  CVE-2004-2265  Candidate  UUDeview 0.5.20 and earlier handles temporary files insecurely during decoding, with unknown attack vectors and impact.  Assigned (20050719)  None (candidate not yet proposed)    View

Page 18805 of 20943, showing 5 records out of 104715 total, starting on record 94021, ending on 94025

Actions