CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10310  CVE-2004-1883  Candidate  Multiple buffer overflows in Ipswitch WS_FTP Server 4.0.2 (1) allow remote authenticated users to execute arbitrary code by causing a large error string to be generated by the ALLO handler, or (2) may allow remote FTP administrators to execute arbitrary code by causing a long hostname or username to be inserted into a reply to a STAT command while a file is being transferred.  Assigned (20050504)  None (candidate not yet proposed)    View
10309  CVE-2004-1882  Candidate  Cross-site scripting (XSS) vulnerability in popuplargeimage.asp in CactuShop 5.x allows remote attackers to inject arbitrary web script or HTML via the strImageTag parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10308  CVE-2004-1881  Candidate  SQL injection vulnerability in (1) mailorder.asp or (2) payonline.asp in CactuShop 5.x allows remote attackers to execute arbitrary SQL commands via the strItems parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10307  CVE-2004-1880  Candidate  Memory leak in the back-bdb backend for OpenLDAP 2.1.12 and earlier allows remote attackers to cause a denial of service (memory consumption).  Assigned (20050504)  None (candidate not yet proposed)    View
10306  CVE-2004-1879  Candidate  Cross-site scripting (XSS) vulnerability in PHPKIT 1.6.03 allows allows remote attackers to inject arbitrary web script or HTML via forum messages.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18882 of 20943, showing 5 records out of 104715 total, starting on record 94406, ending on 94410

Actions