CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10275 | CVE-2004-1848 | Candidate | Ipswitch WS_FTP Server 4.0.2 allows remote attackers to cause a denial of service (disk consumption) and bypass file size restrictions via a REST command with a large size argument, followed by a STOR of a smaller file. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10274 | CVE-2004-1847 | Candidate | News Manager Lite 2.5 allows remote attackers to bypass authentication and gain administrator privileges by setting the ADMIN parameter in the NEWS_LOGIN cookie. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10273 | CVE-2004-1846 | Candidate | Multiple SQL injection vulnerabilities in News Manager Lite 2.5 allow remote attackers to execute arbitrary SQL code via the (1) ID parameter to more.asp, (2) ID parameter to category_news.asp, or (3) filter parameter to news_sort.asp. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10272 | CVE-2004-1845 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in News Manager Lite 2.5 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to comment_add.asp, (2) search parameter to search.asp, or (3) n parameter to category_news_headline.asp. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10271 | CVE-2004-1844 | Candidate | Cross-site scripting (XSS) vulnerability in Member Management System 2.1 allows remote attackers to inject arbitrary web script or HTML via (1) the err parameter to error.asp or (2) register.asp. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 18889 of 20943, showing 5 records out of 104715 total, starting on record 94441, ending on 94445