CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10500  CVE-2004-2074  Candidate  Format string vulnerability in Dream FTP 1.02 allows local users to cause a denial of service (crash) via format string specifiers in the (1) PASS or (2) RETR commands.  Assigned (20050519)  None (candidate not yet proposed)    View
10499  CVE-2004-2073  Candidate  Linux-VServer 1.24 allows local users with root privileges on a virtual server to gain access to the filesystem outside the virtual server via a modified chroot-again exploit using the chmod command.  Assigned (20050519)  None (candidate not yet proposed)    View
10498  CVE-2004-2072  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Mambo Open Source 4.6, and possibly earlier versions, allows remote attackers to execute script on other clients via the Itemid parameter.  Assigned (20050519)  None (candidate not yet proposed)    View
10497  CVE-2004-2071  Candidate  Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers to bypass authentication in the web interface via an HTTP GET request with two slashes ("//") after the server name.  Assigned (20050519)  None (candidate not yet proposed)    View
10496  CVE-2004-2070  Candidate  The Altiris Client Service for Windows 5.6 SP1 Hotfix E (5.6.181) allows local users to execute arbitrary commands by opening the AClient tray icon and using the View Log File option, a different vulnerability than CVE-2005-1590.  Assigned (20050516)  None (candidate not yet proposed)    View

Page 18844 of 20943, showing 5 records out of 104715 total, starting on record 94216, ending on 94220

Actions