CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9390  CVE-2004-0962  Candidate  Apple Remote Desktop Client 1.2.4 executes a GUI application as root when it is started by an Apple Remote Desktop Administrator application, which allows remote authenticated users to execute arbitrary code when loginwindow is active via Fast User Switching.  Assigned (20041018)  None (candidate not yet proposed)    View
9389  CVE-2004-0961  Candidate  Memory leak in FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (memory exhaustion) via a series of Access-Request packets with (1) Ascend-Send-Secret, (2) Ascend-Recv-Secret, or (3) Tunnel-Password attributes.  Assigned (20041018)  None (candidate not yet proposed)    View
9388  CVE-2004-0960  Candidate  FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specific attributes (VSA) that cause a memcpy operation with a -1 argument.  Assigned (20041018)  None (candidate not yet proposed)    View
9387  CVE-2004-0959  Candidate  rfc1867.c in PHP before 5.0.2 allows local users to upload files to arbitrary locations via a PHP script with a certain MIME header that causes the "$_FILES" array to be modified.  Assigned (20041013)  None (candidate not yet proposed)    View
9386  CVE-2004-0958  Candidate  php_variables.c in PHP before 5.0.2 allows remote attackers to read sensitive memory contents via (1) GET, (2) POST, or (3) COOKIE GPC variables that end in an open bracket character, which causes PHP to calculate an incorrect string length.  Assigned (20041013)  None (candidate not yet proposed)    View

Page 19066 of 20943, showing 5 records out of 104715 total, starting on record 95326, ending on 95330

Actions