CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8335  CVE-2003-1511  Candidate  Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to test.txt, (2) the guestName parameter to the custMsg servlet, or (3) the cookiename parameter to the CookieExample servlet.  Assigned (20071025)  None (candidate not yet proposed)    View
8334  CVE-2003-1510  Candidate  TinyWeb 1.9 allows remote attackers to cause a denial of service (CPU consumption) via a ".%00." in an HTTP GET request to the cgi-bin directory.  Assigned (20071025)  None (candidate not yet proposed)    View
8333  CVE-2003-1509  Candidate  Real Networks RealOne Enterprise Desktop 6.0.11.774, RealOne Player 2.0, and RealOne Player 6.0.11.818 through RealOne Player 6.0.11.853 allows remote attackers to execute arbitrary script in the local security zone by embeding script in a temp file before the temp file is executed by the default web browser.  Assigned (20071025)  None (candidate not yet proposed)    View
8332  CVE-2003-1508  Candidate  Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename.  Assigned (20071025)  None (candidate not yet proposed)    View
8331  CVE-2003-1507  Candidate  Planet Technology WGSD-1020 and WSW-2401 Ethernet switches use a default "superuser" account with the "planet" password, which allows remote attackers to gain administrative access.  Assigned (20071025)  None (candidate not yet proposed)    View

Page 19277 of 20943, showing 5 records out of 104715 total, starting on record 96381, ending on 96385

Actions