CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8490 | CVE-2004-0062 | Candidate | Integer overflow in the rnd arithmetic rounding function for various versions of FishCart before 3.1 allows remote attackers to "cause negative totals" via an order with a large quantity. | Modified (20071113) | ACCEPT(1) Baker | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8489 | CVE-2004-0061 | Candidate | WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Ack"ed in 2.46 release notes | View |
8488 | CVE-2004-0060 | Candidate | WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Acknowledged in 2.46 release notes | View |
8487 | CVE-2004-0059 | Candidate | Directory traversal vulnerability in upload capability of WWW File Share Pro 2.42 and earlier allows remote attackers to overwrite arbitrary files via .. (dot dot) sequences in the filename parameter of a Content-Disposition: header. | Modified (20071113) | ACCEPT(2) Baker, Cole | NOOP(3) Armstrong, Cox, Wall | View | |
8486 | CVE-2004-0058 | Candidate | Antivir / Linux 2.0.9-9, and possibly earlier versions, allows local users to overwrite arbitrary files via a symlink attack on the .pid_antivir_$$ temporary file. | Modified (20071113) | ACCEPT(1) Baker | NOOP(4) Armstrong, Cole, Cox, Wall | REVIEWING(1) Green | View |
Page 19246 of 20943, showing 5 records out of 104715 total, starting on record 96226, ending on 96230