CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9845 | CVE-2004-1417 | Candidate | Cross-site scripting (XSS) vulnerability in login.php in PsychoStats 2.2.4 Beta and earlier allows remote attackers to inject arbitrary web script or HTML via the login parameter. | Assigned (20050212) | None (candidate not yet proposed) | View | |
9844 | CVE-2004-1416 | Candidate | pnxr3260.dll in the RealOne 2.0 build 6.0.11.868 browser plugin, as used in Internet Explorer, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted embed tag. | Assigned (20050212) | None (candidate not yet proposed) | View | |
9843 | CVE-2004-1415 | Candidate | SQL injection vulnerability in (1) disp_album.php and possibly (2) disp_img.php in 2Bgal 2.4 and 2.5.1 allows remote attackers to execute arbitrary SQL commands via the id_album parameter. | Assigned (20050212) | None (candidate not yet proposed) | View | |
9842 | CVE-2004-1414 | Candidate | Gadu-Gadu 6.1 build 156 allows remote attackers to cause a denial of service (application hang) via a message that contains many special strings that are converted to images. | Assigned (20050212) | None (candidate not yet proposed) | View | |
9841 | CVE-2004-1413 | Candidate | Multiple SQL injection vulnerabilities in Kayako eSupport 2.x allow remote attackers to execute arbitrary SQL commands via the (1) subcat, (2) rate, (3) questiondetails, (4) ticketkey22, (5) email22 parameters to index.php, or (6) the e-mail field of the Forgot Key feature. | Assigned (20050212) | None (candidate not yet proposed) | View |
Page 18975 of 20943, showing 5 records out of 104715 total, starting on record 94871, ending on 94875