CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9210 | CVE-2004-0782 | Candidate | Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, allows remote attackers to execute arbitrary code via certain n_col and cpp values that enable a heap-based buffer overflow. NOTE: this identifier is ONLY for gtk+. It was incorrectly referenced in an advisory for a different issue (CVE-2004-0687). | Assigned (20040817) | None (candidate not yet proposed) | View | |
9209 | CVE-2004-0781 | Candidate | Cross-site scripting (XSS) vulnerability in list.cgi in the Icecast internal web server (icecast-server) 1.3.12 and earlier allows remote attackers to inject arbitrary web script via the UserAgent parameter. | Assigned (20040817) | None (candidate not yet proposed) | View | |
9208 | CVE-2004-0780 | Candidate | Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument. | Assigned (20040817) | None (candidate not yet proposed) | View | |
9207 | CVE-2004-0779 | Candidate | The (1) Mozilla 1.6, (2) Firebird 0.7 and (3) Firefox 0.8 web browsers do not properly verify that cached passwords for SSL encrypted sites are only sent via SSL encrypted sessions to the site, which allows a remote attacker to cause a cached password to be sent in cleartext to a spoofed site. | Assigned (20040813) | None (candidate not yet proposed) | View | |
9206 | CVE-2004-0778 | Candidate | CVS 1.11.x before 1.11.17, and 1.12.x before 1.12.9, allows remote attackers to determine the existence of arbitrary files and directories via the -X command for an alternate history file, which causes different error messages to be returned. | Assigned (20040811) | None (candidate not yet proposed) | View |
Page 19102 of 20943, showing 5 records out of 104715 total, starting on record 95506, ending on 95510