CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10245  CVE-2004-1818  Candidate  Cross-site scripting (XSS) vulnerability in nmimage.php in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to execute arbitrary script as other users by injecting arbitrary script into the z parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10244  CVE-2004-1817  Candidate  Cross-site scripting (XSS) vulnerability in modules.php in Php-Nuke 7.1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) Your Name field, (2) e-mail field, (3) nicname field, (4) fname parameter, (5) ratenum parameter, or (6) search field.  Assigned (20050504)  None (candidate not yet proposed)    View
10243  CVE-2004-1816  Candidate  Unknown vulnerability in Sun Java System Application Server 7.0 Update 2 and earlier, when a SOAP web service expects an array of objects as an argument, allows remote attackers to cause a denial of service (memory consumption).  Assigned (20050504)  None (candidate not yet proposed)    View
10242  CVE-2004-1815  Candidate  Unknown vulnerability in ColdFusion MX 6.0 and 6.1, and JRun 4.0, when a SOAP web service expects an array of objects as an argument, allows remote attackers to cause a denial of service (memory consumption).  Assigned (20050504)  None (candidate not yet proposed)    View
10241  CVE-2004-1814  Candidate  Directory traversal vulnerability in VocalTec VGW4/8 Gateway 8.0 allows remote attackers to read protected files via .. (dot dot) sequences in an HTTP request, as demonstrated using home.asp.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18895 of 20943, showing 5 records out of 104715 total, starting on record 94471, ending on 94475

Actions