CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6085  CVE-2002-1703  Candidate  Cross-site scripting vulnerability (XSS) in auction.cgi for Mewsoft NetAuction 3.0 allows remote attackers to execute arbitrary script as other users via the Term parameter.  Assigned (20050621)  None (candidate not yet proposed)    View
4294  CVE-2001-1494  Candidate  script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescript log file to any file on the system, then having root execute the script command.  Assigned (20050621)  None (candidate not yet proposed)    View
6086  CVE-2002-1704  Candidate  Zeroboard 4.1, when the "allow_url_fopen" and "register_globals" variables are enabled, allows remote attackers to execute arbitrary PHP code by modifying the _zb_path parameter to reference a URL on a remote web server that contains the code.  Assigned (20050621)  None (candidate not yet proposed)    View
4295  CVE-2001-1495  Candidate  network_query.php in Network Query Tool 1.0 allows remote attackers execute arbitrary commands via shell metacharacters in the target parameter.  Assigned (20050621)  None (candidate not yet proposed)    View
6087  CVE-2002-1705  Candidate  Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to cause a denial of service (crash) via a Cascading Style Sheet (CSS) with the p{cssText} element declared and a bold font weight.  Assigned (20050621)  None (candidate not yet proposed)    View

Page 19257 of 20943, showing 5 records out of 104715 total, starting on record 96281, ending on 96285

Actions