CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6085 | CVE-2002-1703 | Candidate | Cross-site scripting vulnerability (XSS) in auction.cgi for Mewsoft NetAuction 3.0 allows remote attackers to execute arbitrary script as other users via the Term parameter. | Assigned (20050621) | None (candidate not yet proposed) | View | |
4294 | CVE-2001-1494 | Candidate | script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescript log file to any file on the system, then having root execute the script command. | Assigned (20050621) | None (candidate not yet proposed) | View | |
6086 | CVE-2002-1704 | Candidate | Zeroboard 4.1, when the "allow_url_fopen" and "register_globals" variables are enabled, allows remote attackers to execute arbitrary PHP code by modifying the _zb_path parameter to reference a URL on a remote web server that contains the code. | Assigned (20050621) | None (candidate not yet proposed) | View | |
4295 | CVE-2001-1495 | Candidate | network_query.php in Network Query Tool 1.0 allows remote attackers execute arbitrary commands via shell metacharacters in the target parameter. | Assigned (20050621) | None (candidate not yet proposed) | View | |
6087 | CVE-2002-1705 | Candidate | Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to cause a denial of service (crash) via a Cascading Style Sheet (CSS) with the p{cssText} element declared and a bold font weight. | Assigned (20050621) | None (candidate not yet proposed) | View |
Page 19257 of 20943, showing 5 records out of 104715 total, starting on record 96281, ending on 96285