CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8490  CVE-2004-0062  Candidate  Integer overflow in the rnd arithmetic rounding function for various versions of FishCart before 3.1 allows remote attackers to "cause negative totals" via an order with a large quantity.  Modified (20071113)  ACCEPT(1) Baker | NOOP(4) Armstrong, Cole, Cox, Wall    View
8489  CVE-2004-0061  Candidate  WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character.  Modified (20071113)  ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall  Green> Ack"ed in 2.46 release notes  View
8488  CVE-2004-0060  Candidate  WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request.  Modified (20071113)  ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall  Green> Acknowledged in 2.46 release notes  View
8487  CVE-2004-0059  Candidate  Directory traversal vulnerability in upload capability of WWW File Share Pro 2.42 and earlier allows remote attackers to overwrite arbitrary files via .. (dot dot) sequences in the filename parameter of a Content-Disposition: header.  Modified (20071113)  ACCEPT(2) Baker, Cole | NOOP(3) Armstrong, Cox, Wall    View
8486  CVE-2004-0058  Candidate  Antivir / Linux 2.0.9-9, and possibly earlier versions, allows local users to overwrite arbitrary files via a symlink attack on the .pid_antivir_$$ temporary file.  Modified (20071113)  ACCEPT(1) Baker | NOOP(4) Armstrong, Cole, Cox, Wall | REVIEWING(1) Green    View

Page 19246 of 20943, showing 5 records out of 104715 total, starting on record 96226, ending on 96230

Actions