CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10305  CVE-2004-1878  Candidate  LINBOX LIN:BOX allows remote attackers to bypass authentication, obtain sensitive information, or gain access via a direct request to admin/user.pl preceded by // (double leading slash).  Assigned (20050504)  None (candidate not yet proposed)    View
10304  CVE-2004-1877  Candidate  The p_submit_url value in the sample login form in the Oracle 9i Application Server (9iAS) Single Sign-on Administrators Guide, Release 2(9.0.2) for Oracle SSO allows remote attackers to spoof the login page, which could allow users to inadvertently reveal their username and password.  Assigned (20050504)  None (candidate not yet proposed)    View
10303  CVE-2004-1876  Candidate  The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 0.70 allows local users to execute arbitrary commands via shell metacharacters in a file name.  Assigned (20050504)  None (candidate not yet proposed)    View
10302  CVE-2004-1875  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0-R85 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to testfile.html, (2) file parameter to erredit.html, (3) dns parameter to dnslook.html, (4) account parameter to ignorelist.html, (5) account parameter to showlog.html, (6) db parameter to repairdb.html, (7) login parameter to doaddftp.html (8) account parameter to editmsg.htm, or (9) ip parameter to del.html. NOTE: the dnslook.html vector was later reported to exist in cPanel 10.  Assigned (20050504)  None (candidate not yet proposed)    View
10301  CVE-2004-1874  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote attackers to inject arbitrary web script or HTML via the user information forms.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18883 of 20943, showing 5 records out of 104715 total, starting on record 94411, ending on 94415

Actions