CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9045  CVE-2004-0617  Candidate  Cross-site scripting (XSS) vulnerability in ArbitroWeb 0.6 allows remote attackers to inject arbitrary script or HTML via the rawURL parameter.  Assigned (20040629)  None (candidate not yet proposed)    View
9044  CVE-2004-0616  Candidate  The BT Voyager 2000 Wireless ADSL Router has a default public SNMP community name, which allows remote attackers to obtain sensitive information such as the password, which is stored in plaintext.  Assigned (20040629)  None (candidate not yet proposed)    View
9043  CVE-2004-0615  Candidate  Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-624, allows remote attackers to inject arbitrary script or HTML via the DHCP HOSTNAME option in a DHCP request.  Assigned (20040629)  None (candidate not yet proposed)    View
9042  CVE-2004-0614  Candidate  osTicket trusts a hidden form field in the submit form to limit the upload size of a document, which could allow remote attackers to upload a file of any size.  Assigned (20040629)  None (candidate not yet proposed)    View
9041  CVE-2004-0613  Candidate  osTicket allows remote attackers to view sensitive uploaded files and possibly execute arbitrary code via an HTTP request that uploads a PHP file to the ticket attachments directory.  Assigned (20040629)  None (candidate not yet proposed)    View

Page 19135 of 20943, showing 5 records out of 104715 total, starting on record 95671, ending on 95675

Actions