CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8680 | CVE-2004-0252 | Candidate | TYPSoft FTP Server 1.10 allows remote attackers to cause a denial of service (CPU consumption) via an empty USER name. | Modified (20050815) | ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall | View | |
8679 | CVE-2004-0251 | Candidate | Cross-site scripting (XSS) vulnerability in rxgoogle.cgi allows remote attackers to execute arbitrary script as other users via the query parameter. | Proposed (20040318) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8678 | CVE-2004-0250 | Candidate | SQL injection vulnerability in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain privileges via (1) the product parameter in showproduct.php or (2) the cat parameter in showcat.php. | Proposed (20040318) | ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall | View | |
8677 | CVE-2004-0249 | Candidate | PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie"s PXL variable to reference another userID. | Modified (20050815) | ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall | View | |
8676 | CVE-2004-0248 | Candidate | Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into (1) keywords argument of main.inc.php, (2) body argument of help.inc.php, or (3) the subject field in Personal Messages and Forum. | Modified (20050815) | ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall | View |
Page 19208 of 20943, showing 5 records out of 104715 total, starting on record 96036, ending on 96040