CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9345  CVE-2004-0917  Candidate  The default installation of Vignette Application Portal installs the diagnostic utility without authentication requirements, which allows remote attackers to gain sensitive information, such as server and OS version, and conduct unauthorized activities via an HTTP request to /diag.  Assigned (20040927)  None (candidate not yet proposed)    View
9344  CVE-2004-0916  Candidate  Directory traversal vulnerability in cabextract before 1.1 allows remote attackers to overwrite arbitrary files via a cabinet file containing .. (dot dot) sequences in a filename.  Assigned (20040927)  None (candidate not yet proposed)    View
9343  CVE-2004-0915  Candidate  Multiple unknown vulnerabilities in viewcvs before 0.9.2, when exporting a repository as a tar archive, does not properly implement the hide_cvsroot and forbidden settings, which could allow remote attackers to gain sensitive information.  Assigned (20040927)  None (candidate not yet proposed)    View
9342  CVE-2004-0914  Candidate  Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple integer overflows, (2) out-of-bounds memory accesses, (3) directory traversal, (4) shell metacharacter, (5) endless loops, and (6) memory leaks, which could allow remote attackers to obtain sensitive information, cause a denial of service (application crash), or execute arbitrary code via a certain XPM image file. NOTE: it is highly likely that this candidate will be SPLIT into other candidates in the future, per CVE"s content decisions.  Assigned (20040927)  None (candidate not yet proposed)    View
9341  CVE-2004-0913  Candidate  Unknown vulnerability in ecartis 0.x before 0.129a+1.0.0-snap20020514-1.3 and 1.x before 1.0.0+cvs.20030911-8 allows attackers in the same domain to gain administrator privileges and modify configuration.  Assigned (20040927)  None (candidate not yet proposed)    View

Page 19075 of 20943, showing 5 records out of 104715 total, starting on record 95371, ending on 95375

Actions