CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9845  CVE-2004-1417  Candidate  Cross-site scripting (XSS) vulnerability in login.php in PsychoStats 2.2.4 Beta and earlier allows remote attackers to inject arbitrary web script or HTML via the login parameter.  Assigned (20050212)  None (candidate not yet proposed)    View
9844  CVE-2004-1416  Candidate  pnxr3260.dll in the RealOne 2.0 build 6.0.11.868 browser plugin, as used in Internet Explorer, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted embed tag.  Assigned (20050212)  None (candidate not yet proposed)    View
9843  CVE-2004-1415  Candidate  SQL injection vulnerability in (1) disp_album.php and possibly (2) disp_img.php in 2Bgal 2.4 and 2.5.1 allows remote attackers to execute arbitrary SQL commands via the id_album parameter.  Assigned (20050212)  None (candidate not yet proposed)    View
9842  CVE-2004-1414  Candidate  Gadu-Gadu 6.1 build 156 allows remote attackers to cause a denial of service (application hang) via a message that contains many special strings that are converted to images.  Assigned (20050212)  None (candidate not yet proposed)    View
9841  CVE-2004-1413  Candidate  Multiple SQL injection vulnerabilities in Kayako eSupport 2.x allow remote attackers to execute arbitrary SQL commands via the (1) subcat, (2) rate, (3) questiondetails, (4) ticketkey22, (5) email22 parameters to index.php, or (6) the e-mail field of the Forgot Key feature.  Assigned (20050212)  None (candidate not yet proposed)    View

Page 18975 of 20943, showing 5 records out of 104715 total, starting on record 94871, ending on 94875

Actions