CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9465  CVE-2004-1037  Candidate  The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in a search string.  Assigned (20041116)  None (candidate not yet proposed)    View
9464  CVE-2004-1036  Candidate  Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail 1.4.3a and earlier, and 1.5.1-cvs before 23rd October 2004, allows remote attackers to execute arbitrary web script or HTML.  Assigned (20041115)  None (candidate not yet proposed)    View
9463  CVE-2004-1035  Candidate  Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMAP proxy 1.2.2 allow remote attackers to cause a denial of service (server crash) and possibly leak sensitive information via certain literal values that are not properly handled when using the IMAP_Line_Read function.  Assigned (20041112)  None (candidate not yet proposed)    View
9462  CVE-2004-1034  Candidate  Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long Content-Type header for a Real Audio Media (.ram) playlist file.  Assigned (20041112)  None (candidate not yet proposed)    View
9461  CVE-2004-1033  Candidate  Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors of open files, which allows local users to bypass access restrictions and read fcron.allow and fcron.deny via the EDITOR environment variable.  Assigned (20041112)  None (candidate not yet proposed)    View

Page 19051 of 20943, showing 5 records out of 104715 total, starting on record 95251, ending on 95255

Actions