CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9370 | CVE-2004-0942 | Candidate | Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request with a MIME header containing multiple lines with a large number of space characters. | Assigned (20041012) | None (candidate not yet proposed) | View | |
9369 | CVE-2004-0941 | Candidate | Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990. | Assigned (20041012) | None (candidate not yet proposed) | View | |
9368 | CVE-2004-0940 | Candidate | Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error. | Assigned (20041012) | None (candidate not yet proposed) | View | |
9367 | CVE-2004-0939 | Candidate | changepassword.cgi in Neoteris Instant Virtual Extranet (IVE) 3.x and 4.x, with LDAP authentication or NT domain authentication enabled, does not limit the number of times a bad password can be entered, which allows remote attackers to guess passwords via a brute force attack. | Assigned (20041006) | None (candidate not yet proposed) | View | |
9366 | CVE-2004-0938 | Candidate | FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (server crash) by sending an Ascend-Send-Secret attribute without the required leading packet. | Assigned (20041006) | None (candidate not yet proposed) | View |
Page 19070 of 20943, showing 5 records out of 104715 total, starting on record 95346, ending on 95350