CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9035 | CVE-2004-0607 | Candidate | The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9034 | CVE-2004-0606 | Candidate | Cross-site scripting (XSS) vulnerability in Infoblox DNS One running firmware 2.4.0-8 and earlier allows remote attackers to execute arbitrary scripts as other users via the (1) CLIENTID or (2) HOSTNAME option of a DHCP request. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9033 | CVE-2004-0605 | Candidate | Non-registered IRC users using (1) ircd-hybrid 7.0.1 and earlier, (2) ircd-ratbox 1.5.1 and earlier, or (3) ircd-ratbox 2.0rc6 and earlier do not have a rate-limit imposed, which could allow remote attackers to cause a denial of service by repeatedly making requests, which are slowly dequeued. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9032 | CVE-2004-0604 | Candidate | The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (crash), possibly via an empty search query, which triggers a NULL dereference. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9031 | CVE-2004-0603 | Candidate | gzexe in gzip 1.3.3 and earlier will execute an argument when the creation of a temp file fails instead of exiting the program, which could allow remote attackers or local users to execute arbitrary commands, a different vulnerability than CVE-1999-1332. | Assigned (20040629) | None (candidate not yet proposed) | View |
Page 19137 of 20943, showing 5 records out of 104715 total, starting on record 95681, ending on 95685