CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8043  CVE-2003-1219  Candidate  Cross-site scripting (XSS) vulnerability in the tep_href_link function in html_output.php for osCommerce before 2.2-MS3 allows remote attackers to inject arbitrary web script or HTML via the osCsid parameter.  Assigned (20050804)  None (candidate not yet proposed)    View
10711  CVE-2004-2285  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-2022. Reason: This candidate is a duplicate of CVE-2004-2022. Notes: All CVE users should reference CVE-2004-2022 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050804)  None (candidate not yet proposed)    View
10712  CVE-2004-2286  Candidate  Integer overflow in the duplication operator in ActivePerl allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large multiplier, which may trigger a buffer overflow.  Assigned (20050804)  None (candidate not yet proposed)    View
10713  CVE-2004-2287  Candidate  Directory traversal vulnerability in explorer.php in DSM Light Web File Browser 2.0 allows remote attackers to read arbitrary files via .. (dot dot) in the wdir parameter.  Assigned (20050804)  None (candidate not yet proposed)    View
10714  CVE-2004-2288  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Jelsoft vBulletin allows remote attackers to spoof parts of a website via the loc parameter.  Assigned (20050804)  None (candidate not yet proposed)    View

Page 1896 of 20943, showing 5 records out of 104715 total, starting on record 9476, ending on 9480

Actions