CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8820 | CVE-2004-0392 | Candidate | racoon before 20040407b allows remote attackers to cause a denial of service (infinite loop and dropped connections) via an IKE message with a malformed Generic Payload Header containing invalid (1) "Security Association Next Payload" and (2) "RESERVED" fields. | Assigned (20040413) | None (candidate not yet proposed) | View | |
8819 | CVE-2004-0391 | Candidate | Cisco Wireless LAN Solution Engine (WLSE) 2.0 through 2.5 and Hosting Solution Engine (HSE) 1.7 through 1.7.3 have a hardcoded username and password, which allows remote attackers to add new users, modify existing users, and change configuration. | Assigned (20040409) | None (candidate not yet proposed) | View | |
8818 | CVE-2004-0390 | Candidate | SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attackers to gain unauthorized access to an X session via other X login methods. | Assigned (20040409) | None (candidate not yet proposed) | View | |
8817 | CVE-2004-0389 | Candidate | RealNetworks Helix Universal Server 9.0.1 and 9.0.2 allows remote attackers to cause a denial of service (crash) via malformed requests that trigger a null dereference, as demonstrated using (1) GET_PARAMETER or (2) DESCRIBE requests. | Assigned (20040409) | None (candidate not yet proposed) | View | |
8816 | CVE-2004-0388 | Candidate | The mysqld_multi script in MySQL allows local users to overwrite arbitrary files via a symlink attack. | Assigned (20040409) | None (candidate not yet proposed) | View |
Page 19180 of 20943, showing 5 records out of 104715 total, starting on record 95896, ending on 95900