CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10235 | CVE-2004-1808 | Candidate | Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbitrary files via a symlink attack. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10234 | CVE-2004-1807 | Candidate | Cross-site scripting (XSS) vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to inject arbitrary web script or HTML via the URL. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10233 | CVE-2004-1806 | Candidate | SQL injection vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to execute SQL commands via the (1) category_id, (2) product_id, or (3) feature_id parameters. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10232 | CVE-2004-1805 | Candidate | Format string vulnerability in games using the Epic Games Unreal Engine 436 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in class names. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10231 | CVE-2004-1804 | Candidate | wMCam server 2.1.348 allows remote attackers to cause a denial of service (no new connections) via multiple malformed HTTP requests without the GET command. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 18897 of 20943, showing 5 records out of 104715 total, starting on record 94481, ending on 94485