CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10465 | CVE-2004-2039 | Candidate | e107 0.615 allows remote attackers to obtain sensitive information via a direct request to (1) alt_news.php, (2) backend_menu.php, (3) clock_menu.php, (4) counter_menu.php, (5) login_menu.php, and other files, which reveal the full path in a PHP error message. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10464 | CVE-2004-2038 | Candidate | Cross-site scripting (XSS) vulnerability in Land Down Under (LDU) before LDU 700 allows remote attackers to inject arbitrary web script or HTML via a BBcode img tag in (1) functions.php, (2) header.php or (3) auth.inc.php. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10463 | CVE-2004-2037 | Candidate | Buffer overflow in Mollensoft Lightweight FTP Server 3.6 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long CWD command, as demonstrated in one example by using the "cd" command in an interactive FTP client. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10462 | CVE-2004-2036 | Candidate | SQL injection vulnerability in the art_print function in print.inc.php in unknown versions of jPortal before 2.3.1 allows remote attackers to inject arbitrary SQL commands via the id parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10461 | CVE-2004-2035 | Candidate | MiniShare 1.3.2 allows remote attackers to cause a denial of service (crash) via a malformed HTTP GET or HEAD request without the proper number of trailing CRLF sequences. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 18851 of 20943, showing 5 records out of 104715 total, starting on record 94251, ending on 94255