CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9045 | CVE-2004-0617 | Candidate | Cross-site scripting (XSS) vulnerability in ArbitroWeb 0.6 allows remote attackers to inject arbitrary script or HTML via the rawURL parameter. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9044 | CVE-2004-0616 | Candidate | The BT Voyager 2000 Wireless ADSL Router has a default public SNMP community name, which allows remote attackers to obtain sensitive information such as the password, which is stored in plaintext. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9043 | CVE-2004-0615 | Candidate | Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-624, allows remote attackers to inject arbitrary script or HTML via the DHCP HOSTNAME option in a DHCP request. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9042 | CVE-2004-0614 | Candidate | osTicket trusts a hidden form field in the submit form to limit the upload size of a document, which could allow remote attackers to upload a file of any size. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9041 | CVE-2004-0613 | Candidate | osTicket allows remote attackers to view sensitive uploaded files and possibly execute arbitrary code via an HTTP request that uploads a PHP file to the ticket attachments directory. | Assigned (20040629) | None (candidate not yet proposed) | View |
Page 19135 of 20943, showing 5 records out of 104715 total, starting on record 95671, ending on 95675