CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8370 | CVE-2003-1546 | Candidate | Cross-site scripting (XSS) vulnerability in gbook.php in Filebased guestbook 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the comment section. | Assigned (20080305) | None (candidate not yet proposed) | View | |
8369 | CVE-2003-1545 | Candidate | Absolute path traversal vulnerability in nukestyles.com viewpage.php addon for PHP-Nuke allows remote attackers to read arbitrary files via a full pathname in the file parameter. NOTE: This was originally reported as an issue in PHP-Nuke 6.5, but this is an independent addon. | Assigned (20080228) | None (candidate not yet proposed) | View | |
8368 | CVE-2003-1544 | Candidate | Unrestricted critical resource lock in Terminal Services for Windows 2000 before SP4 and Windows XP allows remote authenticated users to cause a denial of service (reboot) by obtaining a read lock on msgina.dll, which prevents msgina.dll from being loaded. | Assigned (20080213) | None (candidate not yet proposed) | View | |
8367 | CVE-2003-1543 | Candidate | Cross-site scripting (XSS) vulnerability in Bajie Http Web Server 0.95zxe, 0.95zxc, and possibly others, allows remote attackers to inject arbitrary web script or HTML via the query string, which is reflected in an error message. | Assigned (20080213) | None (candidate not yet proposed) | View | |
8366 | CVE-2003-1542 | Candidate | Directory traversal vulnerability in plugins/file.php in phpWebFileManager before 0.4.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the fm_path parameter. | Assigned (20080213) | None (candidate not yet proposed) | View |
Page 19270 of 20943, showing 5 records out of 104715 total, starting on record 96346, ending on 96350