CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10864  CVE-2004-2438  Candidate  Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 allows remote attackers to inject arbitrary web script or HTML via the (1) Submit News, (2) Submit Link or (3) Submit Article field.  Assigned (20050820)  None (candidate not yet proposed)    View
10865  CVE-2004-2439  Candidate  The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote attackers to upgrade firmware.  Assigned (20050820)  None (candidate not yet proposed)    View
10866  CVE-2004-2440  Candidate  Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users.  Assigned (20050820)  None (candidate not yet proposed)    View
10867  CVE-2004-2441  Candidate  Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related to a "potential security issue."  Assigned (20050820)  None (candidate not yet proposed)    View
10868  CVE-2004-2442  Candidate  Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system.  Assigned (20050820)  None (candidate not yet proposed)    View

Page 18965 of 20943, showing 5 records out of 104715 total, starting on record 94821, ending on 94825

Actions