CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10610 | CVE-2004-2184 | Candidate | Directory traversal vulnerability in Digicraft Yak! server 2.0 through 2.1.2 allows remote attackers to read or write arbitrary files via "../" or ".." sequences in commands such as (1) dir or (2) put. | Assigned (20050711) | None (candidate not yet proposed) | View | |
10611 | CVE-2004-2185 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.5 allow remote attackers to execute arbitrary scripts and/or SQL queries via (1) the UnicodeConverter extension, (2) raw page views, (3) SpecialIpblocklist, (4) SpecialEmailuser, (5) SpecialMaintenance, and (6) ImagePage. | Assigned (20050711) | None (candidate not yet proposed) | View | |
10612 | CVE-2004-2186 | Candidate | SQL injection vulnerability in MediaWiki 1.3.5 allows remote attackers to execute arbitrary SQL commands via SpecialMaintenance. | Assigned (20050711) | None (candidate not yet proposed) | View | |
10613 | CVE-2004-2187 | Candidate | Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename validation," has unknown impact and attack vectors. | Assigned (20050711) | None (candidate not yet proposed) | View | |
10614 | CVE-2004-2188 | Candidate | Cross-site scripting (XSS) vulnerability in DMXReady Site Chassis Manager allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | Assigned (20050711) | None (candidate not yet proposed) | View |
Page 19153 of 20943, showing 5 records out of 104715 total, starting on record 95761, ending on 95765