CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10781 | CVE-2004-2355 | Candidate | Cross-site scripting (XSS) vulnerability in Crafty Syntax Live Help (CSLH) before 2.7.4 allows remote attackers to inject arbitrary web script or HTML via the name field of a livehelp or chat session. | Assigned (20050816) | None (candidate not yet proposed) | View | |
10782 | CVE-2004-2356 | Candidate | Early termination vulnerability in Fizmez Web Server 1.0 allows remote attackers to cause a denial of service (crash) by connecting to the server and then disconnecting without sending any data, which triggers a null pointer dereference. | Assigned (20050816) | None (candidate not yet proposed) | View | |
10783 | CVE-2004-2357 | Candidate | The embedded MySQL 4.0 server for Proofpoint Protection Server does not require a password for the root user of MySQL, which allows remote attackers to read or modify the backend database. | Assigned (20050816) | None (candidate not yet proposed) | View | |
10784 | CVE-2004-2358 | Candidate | Cross-site scripting (XSS) vulnerability in admin_words.php for phpBB 2.0.6c allows remote attackers to inject arbitrary web script or HTML via the id parameter. | Assigned (20050816) | None (candidate not yet proposed) | View | |
10785 | CVE-2004-2359 | Candidate | Dell TrueMobile 1300 WLAN Mini-PCI Card Util TrayApplet 3.10.39.0 does not properly drop SYSTEM privileges when started from the systray applet, which allows local users to gain privileges by accessing the Help functionality. | Assigned (20050816) | None (candidate not yet proposed) | View |
Page 18997 of 20943, showing 5 records out of 104715 total, starting on record 94981, ending on 94985