CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10510  CVE-2004-2084  Candidate  Cross-site scripting (XSS) vulnerability in search.php in JShop E-Commerce Server allows remote attackers to inject arbitrary web script or HTML via the xSearch parameter.  Assigned (20050519)  None (candidate not yet proposed)    View
10509  CVE-2004-2083  Candidate  Opera Web Browser 7.0 through 7.23 allows remote attackers to trick users into executing a malicious file by embedding a CLSID in the file name, which causes the malicious file to appear as a trusted file type, aka "File Download Extension Spoofing."  Assigned (20050519)  None (candidate not yet proposed)    View
10508  CVE-2004-2082  Candidate  The samiftp.dll library in Sami FTP Server 1.1.3 allows remote authenticated users to cause a denial of service (pmsystem.exe crash) via a GET request wit a large number of leading "/" (slash) characters.  Assigned (20050519)  None (candidate not yet proposed)    View
10507  CVE-2004-2081  Candidate  The samiftp.dll library in Sami FTP Server 1.1.3 allows local users to cause a denial of service (pmsystem.exe crash) by issuing (1) a CD command with a tilde (~) character or dot dot (/../) or (2) a GET command for an unavailable file.  Assigned (20050519)  None (candidate not yet proposed)    View
10506  CVE-2004-2080  Candidate  Red-M Red-Alert 2.7.5 with software 3.1 build 24 converts multiple spaces in a Service Set Identifier (SSID) to a single space, which prevents Red-Alert from correctly identifying the SSID.  Assigned (20050519)  None (candidate not yet proposed)    View

Page 18842 of 20943, showing 5 records out of 104715 total, starting on record 94206, ending on 94210

Actions