CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10445  CVE-2004-2019  Candidate  The WebLinks module in Php-Nuke 6.x through 7.3 allows remote attackers to obtain sensitive information via an invalid show parameter, which displays the full path in a PHP error message.  Assigned (20050504)  None (candidate not yet proposed)    View
10444  CVE-2004-2018  Candidate  PHP remote file inclusion vulnerability in index.php in Php-Nuke 6.x through 7.3 allows remote attackers to execute arbitrary PHP code by modifying the modpath parameter to reference a URL on a remote web server that contains the code.  Assigned (20050504)  None (candidate not yet proposed)    View
10443  CVE-2004-2017  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Turbo Traffic Trader C (TTT-C) 1.0 allow remote attackers to inject arbitrary HTML or web script, as demonstrated via (1) the link parameter to ttt-out, (2) the X-Forwarded-For header in a GET request to ttt-in, (3) the Referer header in a GET request to ttt-in, or the (4) site name or (5) site URL fields in the main control panel.  Assigned (20050504)  None (candidate not yet proposed)    View
10442  CVE-2004-2016  Candidate  Stack-based buffer overflow in the HTTP server in NetChat 7.3 and earlier allows remote attackers to execute arbitrary code via a long GET request.  Assigned (20050504)  None (candidate not yet proposed)    View
10441  CVE-2004-2015  Candidate  Cross-site scripting (XSS) vulnerability in WebCT Campus Edition allows remote attackers to inject arbitrary HTML or web script via (1) iframe, (2) img, or (3) object tags.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18855 of 20943, showing 5 records out of 104715 total, starting on record 94271, ending on 94275

Actions