CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10781  CVE-2004-2355  Candidate  Cross-site scripting (XSS) vulnerability in Crafty Syntax Live Help (CSLH) before 2.7.4 allows remote attackers to inject arbitrary web script or HTML via the name field of a livehelp or chat session.  Assigned (20050816)  None (candidate not yet proposed)    View
10782  CVE-2004-2356  Candidate  Early termination vulnerability in Fizmez Web Server 1.0 allows remote attackers to cause a denial of service (crash) by connecting to the server and then disconnecting without sending any data, which triggers a null pointer dereference.  Assigned (20050816)  None (candidate not yet proposed)    View
10783  CVE-2004-2357  Candidate  The embedded MySQL 4.0 server for Proofpoint Protection Server does not require a password for the root user of MySQL, which allows remote attackers to read or modify the backend database.  Assigned (20050816)  None (candidate not yet proposed)    View
10784  CVE-2004-2358  Candidate  Cross-site scripting (XSS) vulnerability in admin_words.php for phpBB 2.0.6c allows remote attackers to inject arbitrary web script or HTML via the id parameter.  Assigned (20050816)  None (candidate not yet proposed)    View
10785  CVE-2004-2359  Candidate  Dell TrueMobile 1300 WLAN Mini-PCI Card Util TrayApplet 3.10.39.0 does not properly drop SYSTEM privileges when started from the systray applet, which allows local users to gain privileges by accessing the Help functionality.  Assigned (20050816)  None (candidate not yet proposed)    View

Page 18997 of 20943, showing 5 records out of 104715 total, starting on record 94981, ending on 94985

Actions