CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10957 | CVE-2004-2531 | Candidate | X.509 Certificate Signature Verification in Gnu transport layer security library (GnuTLS) 1.0.16 allows remote attackers to cause a denial of service (CPU consumption) via certificates containing long chains and signed with large RSA keys. | Assigned (20051025) | None (candidate not yet proposed) | View | |
10958 | CVE-2004-2532 | Candidate | Serv-U FTP server before 5.1.0.0 has a default account and password for local administration, which allows local users to execute arbitrary commands by connecting to the server using the default administrator account, creating a new user, logging in as that new user, and then using the SITE EXEC command. | Assigned (20051025) | None (candidate not yet proposed) | View | |
10959 | CVE-2004-2533 | Candidate | Serv-U FTP Server 4.1 (possibly 4.0) allows remote attackers to cause a denial of service (application crash) via a SITE CHMOD command with a "\..." followed by a short string, causing partial memory corruption, a different vulnerability than CVE-2004-2111. | Assigned (20051025) | None (candidate not yet proposed) | View | |
10960 | CVE-2004-2534 | Candidate | Fastream NETFile Server 7.1.2 does not properly handle keep-alive connection timeouts and does not close the connection after a HEAD request, which allows remote attackers to perform a denial of service (connection consumption) by sending a large number HTTP HEAD requests. | Assigned (20051025) | None (candidate not yet proposed) | View | |
10961 | CVE-2004-2535 | Candidate | The person-to-person secure messaging feature in Sticker before 3.1.0 beta 2 allows remote attackers to post messages to unauthorized private groups by using the group"s public encryption key. | Assigned (20051025) | None (candidate not yet proposed) | View |
Page 18826 of 20943, showing 5 records out of 104715 total, starting on record 94126, ending on 94130