CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10115 | CVE-2004-1687 | Candidate | CRLF injection vulnerability in down.asp for Snitz Forums 2000 3.4.04 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the location parameter. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10114 | CVE-2004-1686 | Candidate | Internet Explorer 6.0 in Windows XP SP2 allows remote attackers to bypass the Information Bar prompt for ActiveX and Javascript via an XHTML page that contains an Internet Explorer formatted comment between the DOCTYPE tag and the HTML tag, as demonstrated using the DesignScience MathPlayer ActiveX plugin. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10113 | CVE-2004-1685 | Candidate | SMC routers SMC7004VWBR running firmware 1.00.014 and SMC7008ABR EU running firmware 1.42.003 allow remote attackers to bypass authentication by connecting to it from the same IP address as the administrator who is logged in, then accessing the setup_status.htm or status.HTM pages. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10112 | CVE-2004-1684 | Candidate | Zyxel P681 running ZyNOS Vt020225a contains portions of memory in an ARP request, which allows remote attackers to obtain sensitive information by sniffing the network. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10111 | CVE-2004-1683 | Candidate | A race condition in crrtrap for QNX RTP 6.1 allows local users to gain privileges by modifying the PATH environment variable to reference a malicious io-graphics program before is executed by crrtrap. | Assigned (20050221) | None (candidate not yet proposed) | View |
Page 18921 of 20943, showing 5 records out of 104715 total, starting on record 94601, ending on 94605