CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9035  CVE-2004-0607  Candidate  The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication.  Assigned (20040629)  None (candidate not yet proposed)    View
9034  CVE-2004-0606  Candidate  Cross-site scripting (XSS) vulnerability in Infoblox DNS One running firmware 2.4.0-8 and earlier allows remote attackers to execute arbitrary scripts as other users via the (1) CLIENTID or (2) HOSTNAME option of a DHCP request.  Assigned (20040629)  None (candidate not yet proposed)    View
9033  CVE-2004-0605  Candidate  Non-registered IRC users using (1) ircd-hybrid 7.0.1 and earlier, (2) ircd-ratbox 1.5.1 and earlier, or (3) ircd-ratbox 2.0rc6 and earlier do not have a rate-limit imposed, which could allow remote attackers to cause a denial of service by repeatedly making requests, which are slowly dequeued.  Assigned (20040629)  None (candidate not yet proposed)    View
9032  CVE-2004-0604  Candidate  The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (crash), possibly via an empty search query, which triggers a NULL dereference.  Assigned (20040629)  None (candidate not yet proposed)    View
9031  CVE-2004-0603  Candidate  gzexe in gzip 1.3.3 and earlier will execute an argument when the creation of a temp file fails instead of exiting the program, which could allow remote attackers or local users to execute arbitrary commands, a different vulnerability than CVE-1999-1332.  Assigned (20040629)  None (candidate not yet proposed)    View

Page 19137 of 20943, showing 5 records out of 104715 total, starting on record 95681, ending on 95685

Actions