CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10864 | CVE-2004-2438 | Candidate | Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 allows remote attackers to inject arbitrary web script or HTML via the (1) Submit News, (2) Submit Link or (3) Submit Article field. | Assigned (20050820) | None (candidate not yet proposed) | View | |
10865 | CVE-2004-2439 | Candidate | The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote attackers to upgrade firmware. | Assigned (20050820) | None (candidate not yet proposed) | View | |
10866 | CVE-2004-2440 | Candidate | Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users. | Assigned (20050820) | None (candidate not yet proposed) | View | |
10867 | CVE-2004-2441 | Candidate | Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related to a "potential security issue." | Assigned (20050820) | None (candidate not yet proposed) | View | |
10868 | CVE-2004-2442 | Candidate | Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system. | Assigned (20050820) | None (candidate not yet proposed) | View |
Page 18965 of 20943, showing 5 records out of 104715 total, starting on record 94821, ending on 94825