CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9825  CVE-2004-1397  Candidate  Cross-site scripting (XSS) vulnerability in UseModWiki 1.0 allows remote attackers to inject arbitrary web script or HTML via an argument to wiki.pl.  Assigned (20050212)  None (candidate not yet proposed)    View
9824  CVE-2004-1396  Candidate  Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU consumption) via (1) an mp4 or m4a playlist file that contains invalid tag data or (2) an invalid .nsv or .nsa file.  Assigned (20050212)  None (candidate not yet proposed)    View
9823  CVE-2004-1395  Candidate  The Lithtech engine, as used in (1) Contract Jack 1.1 and earlier, (2) No one lives forever 2 1.3 and earlier, (3) Tron 2.0 1.042 and earlier, (4) F.E.A.R. (First Encounter Assault and Recon), and possibly other games, allows remote attackers to cause a denial of service (connection refused) via a UDP packet that causes recvfrom to generate a return code that causes the listening loop to exit, as demonstrated using zero byte packets or packets between 8193 and 12280 bytes, which result in conditions that are not "Operation would block."  Assigned (20050212)  None (candidate not yet proposed)    View
9822  CVE-2004-1394  Candidate  The pfexec function for Sun Solaris 8 and 9 does not properly handle when a custom profile contains an invalid entry in the exec_attr database, which may allow local users with custom rights profiles to execute profile commands with additional privileges.  Assigned (20050208)  None (candidate not yet proposed)    View
9821  CVE-2004-1393  Candidate  Unknown vulnerability in the tcsetattr function for Sun Solaris for SPARC 2.6, 7, and 8 allows local users to cause a denial of service (system hang).  Assigned (20050208)  None (candidate not yet proposed)    View

Page 18979 of 20943, showing 5 records out of 104715 total, starting on record 94891, ending on 94895

Actions