CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10510 | CVE-2004-2084 | Candidate | Cross-site scripting (XSS) vulnerability in search.php in JShop E-Commerce Server allows remote attackers to inject arbitrary web script or HTML via the xSearch parameter. | Assigned (20050519) | None (candidate not yet proposed) | View | |
10509 | CVE-2004-2083 | Candidate | Opera Web Browser 7.0 through 7.23 allows remote attackers to trick users into executing a malicious file by embedding a CLSID in the file name, which causes the malicious file to appear as a trusted file type, aka "File Download Extension Spoofing." | Assigned (20050519) | None (candidate not yet proposed) | View | |
10508 | CVE-2004-2082 | Candidate | The samiftp.dll library in Sami FTP Server 1.1.3 allows remote authenticated users to cause a denial of service (pmsystem.exe crash) via a GET request wit a large number of leading "/" (slash) characters. | Assigned (20050519) | None (candidate not yet proposed) | View | |
10507 | CVE-2004-2081 | Candidate | The samiftp.dll library in Sami FTP Server 1.1.3 allows local users to cause a denial of service (pmsystem.exe crash) by issuing (1) a CD command with a tilde (~) character or dot dot (/../) or (2) a GET command for an unavailable file. | Assigned (20050519) | None (candidate not yet proposed) | View | |
10506 | CVE-2004-2080 | Candidate | Red-M Red-Alert 2.7.5 with software 3.1 build 24 converts multiple spaces in a Service Set Identifier (SSID) to a single space, which prevents Red-Alert from correctly identifying the SSID. | Assigned (20050519) | None (candidate not yet proposed) | View |
Page 18842 of 20943, showing 5 records out of 104715 total, starting on record 94206, ending on 94210