CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9465 | CVE-2004-1037 | Candidate | The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in a search string. | Assigned (20041116) | None (candidate not yet proposed) | View | |
9464 | CVE-2004-1036 | Candidate | Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail 1.4.3a and earlier, and 1.5.1-cvs before 23rd October 2004, allows remote attackers to execute arbitrary web script or HTML. | Assigned (20041115) | None (candidate not yet proposed) | View | |
9463 | CVE-2004-1035 | Candidate | Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMAP proxy 1.2.2 allow remote attackers to cause a denial of service (server crash) and possibly leak sensitive information via certain literal values that are not properly handled when using the IMAP_Line_Read function. | Assigned (20041112) | None (candidate not yet proposed) | View | |
9462 | CVE-2004-1034 | Candidate | Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long Content-Type header for a Real Audio Media (.ram) playlist file. | Assigned (20041112) | None (candidate not yet proposed) | View | |
9461 | CVE-2004-1033 | Candidate | Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors of open files, which allows local users to bypass access restrictions and read fcron.allow and fcron.deny via the EDITOR environment variable. | Assigned (20041112) | None (candidate not yet proposed) | View |
Page 19051 of 20943, showing 5 records out of 104715 total, starting on record 95251, ending on 95255