CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10610  CVE-2004-2184  Candidate  Directory traversal vulnerability in Digicraft Yak! server 2.0 through 2.1.2 allows remote attackers to read or write arbitrary files via "../" or ".." sequences in commands such as (1) dir or (2) put.  Assigned (20050711)  None (candidate not yet proposed)    View
10611  CVE-2004-2185  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.5 allow remote attackers to execute arbitrary scripts and/or SQL queries via (1) the UnicodeConverter extension, (2) raw page views, (3) SpecialIpblocklist, (4) SpecialEmailuser, (5) SpecialMaintenance, and (6) ImagePage.  Assigned (20050711)  None (candidate not yet proposed)    View
10612  CVE-2004-2186  Candidate  SQL injection vulnerability in MediaWiki 1.3.5 allows remote attackers to execute arbitrary SQL commands via SpecialMaintenance.  Assigned (20050711)  None (candidate not yet proposed)    View
10613  CVE-2004-2187  Candidate  Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename validation," has unknown impact and attack vectors.  Assigned (20050711)  None (candidate not yet proposed)    View
10614  CVE-2004-2188  Candidate  Cross-site scripting (XSS) vulnerability in DMXReady Site Chassis Manager allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20050711)  None (candidate not yet proposed)    View

Page 19153 of 20943, showing 5 records out of 104715 total, starting on record 95761, ending on 95765

Actions