CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8335 | CVE-2003-1511 | Candidate | Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to test.txt, (2) the guestName parameter to the custMsg servlet, or (3) the cookiename parameter to the CookieExample servlet. | Assigned (20071025) | None (candidate not yet proposed) | View | |
8334 | CVE-2003-1510 | Candidate | TinyWeb 1.9 allows remote attackers to cause a denial of service (CPU consumption) via a ".%00." in an HTTP GET request to the cgi-bin directory. | Assigned (20071025) | None (candidate not yet proposed) | View | |
8333 | CVE-2003-1509 | Candidate | Real Networks RealOne Enterprise Desktop 6.0.11.774, RealOne Player 2.0, and RealOne Player 6.0.11.818 through RealOne Player 6.0.11.853 allows remote attackers to execute arbitrary script in the local security zone by embeding script in a temp file before the temp file is executed by the default web browser. | Assigned (20071025) | None (candidate not yet proposed) | View | |
8332 | CVE-2003-1508 | Candidate | Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename. | Assigned (20071025) | None (candidate not yet proposed) | View | |
8331 | CVE-2003-1507 | Candidate | Planet Technology WGSD-1020 and WSW-2401 Ethernet switches use a default "superuser" account with the "planet" password, which allows remote attackers to gain administrative access. | Assigned (20071025) | None (candidate not yet proposed) | View |
Page 19277 of 20943, showing 5 records out of 104715 total, starting on record 96381, ending on 96385