CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8930  CVE-2004-0502  Candidate  Outlook 2003, when replying to an e-mail message, stores certain files in a predictable location for the "src" of an img tag of the original message, which allows remote attackers to bypass zone restrictions and exploit other issues that rely on predictable locations, as demonstrated using a shell: URI.  Assigned (20040527)  None (candidate not yet proposed)    View
8929  CVE-2004-0501  Candidate  Outlook 2003 allows remote attackers to bypass intended access restrictions and cause Outlook to request a URL from a remote site via an HTML e-mail message containing a Vector Markup Language (VML) entity whose src parameter points to the remote site, which could allow remote attackers to know when a message has been read, verify valid e-mail addresses, and possibly leak other information.  Assigned (20040527)  None (candidate not yet proposed)    View
8928  CVE-2004-0500  Candidate  Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protocol messages that are not properly handled in a strncpy call.  Assigned (20040527)  None (candidate not yet proposed)    View
8927  CVE-2004-0499  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none.  Assigned (20040527)  None (candidate not yet proposed)    View
8926  CVE-2004-0498  Candidate  The H.323 protocol agent in StoneSoft firewall engine 2.2.8 and earlier allows remote attackers to cause a denial of service (crash) via crafted H.323 packets.  Assigned (20040527)  None (candidate not yet proposed)    View

Page 19158 of 20943, showing 5 records out of 104715 total, starting on record 95786, ending on 95790

Actions