CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10445 | CVE-2004-2019 | Candidate | The WebLinks module in Php-Nuke 6.x through 7.3 allows remote attackers to obtain sensitive information via an invalid show parameter, which displays the full path in a PHP error message. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10444 | CVE-2004-2018 | Candidate | PHP remote file inclusion vulnerability in index.php in Php-Nuke 6.x through 7.3 allows remote attackers to execute arbitrary PHP code by modifying the modpath parameter to reference a URL on a remote web server that contains the code. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10443 | CVE-2004-2017 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Turbo Traffic Trader C (TTT-C) 1.0 allow remote attackers to inject arbitrary HTML or web script, as demonstrated via (1) the link parameter to ttt-out, (2) the X-Forwarded-For header in a GET request to ttt-in, (3) the Referer header in a GET request to ttt-in, or the (4) site name or (5) site URL fields in the main control panel. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10442 | CVE-2004-2016 | Candidate | Stack-based buffer overflow in the HTTP server in NetChat 7.3 and earlier allows remote attackers to execute arbitrary code via a long GET request. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10441 | CVE-2004-2015 | Candidate | Cross-site scripting (XSS) vulnerability in WebCT Campus Edition allows remote attackers to inject arbitrary HTML or web script via (1) iframe, (2) img, or (3) object tags. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 18855 of 20943, showing 5 records out of 104715 total, starting on record 94271, ending on 94275