CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10235  CVE-2004-1808  Candidate  Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbitrary files via a symlink attack.  Assigned (20050504)  None (candidate not yet proposed)    View
10234  CVE-2004-1807  Candidate  Cross-site scripting (XSS) vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to inject arbitrary web script or HTML via the URL.  Assigned (20050504)  None (candidate not yet proposed)    View
10233  CVE-2004-1806  Candidate  SQL injection vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to execute SQL commands via the (1) category_id, (2) product_id, or (3) feature_id parameters.  Assigned (20050504)  None (candidate not yet proposed)    View
10232  CVE-2004-1805  Candidate  Format string vulnerability in games using the Epic Games Unreal Engine 436 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in class names.  Assigned (20050504)  None (candidate not yet proposed)    View
10231  CVE-2004-1804  Candidate  wMCam server 2.1.348 allows remote attackers to cause a denial of service (no new connections) via multiple malformed HTTP requests without the GET command.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18897 of 20943, showing 5 records out of 104715 total, starting on record 94481, ending on 94485

Actions