CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10290  CVE-2004-1863  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allow remote attackers to inject arbitrary web script or HTML via (1) the u2uheader parameter in editprofile.php, the restrict parameter in (2) member.php, (3) misc.php, and (4) today.php, and (5) an arbitrary parameter in phpinfo.php.  Assigned (20050504)  None (candidate not yet proposed)    View
10289  CVE-2004-1862  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Extreme Messageboard (XMB) 1.8 SP3 and 1.9 beta allow remote attackers to inject arbitrary web script or HTML via the (1) xmbuser parameter to xmb.php, (2) folder parameter to u2u.php, (3) viewmost, replymost, or latest parameter to stats.php, (4) message or icons parameter to post.php, (5) threadlist, pagelinks, forumlist, navigation, or (6) forumdisplay parameter to forumdisplay.php.  Assigned (20050504)  None (candidate not yet proposed)    View
10288  CVE-2004-1861  Candidate  Invision NetSupport School Pro uses a weak encryption algorithm to encrypt passwords, which allows local users to obtain passwords.  Assigned (20050504)  None (candidate not yet proposed)    View
10287  CVE-2004-1860  Candidate  Buffer overflow in Check Point SmartDashboard in Check Point NG AI R54 and R55 allows remote authenticated users to cause a denial of service (server disconnect) and possibly execute arbitrary code via a large filter on a column when using SmartView Tracker.  Assigned (20050504)  None (candidate not yet proposed)    View
10286  CVE-2004-1859  Candidate  Directory traversal vulnerability in Trend Micro Interscan Web Viruswall in InterScan VirusWall 3.5x allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18886 of 20943, showing 5 records out of 104715 total, starting on record 94426, ending on 94430

Actions