CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10767  CVE-2004-2341  Candidate  PHP file include injection vulnerability in isearch.inc.php for iSearch allows remote attackers to execute arbitrary code via the isearch_path parameter.  Assigned (20050816)  None (candidate not yet proposed)    View
10768  CVE-2004-2342  Candidate  ChatterBox 2.0 allows remote attackers to cause a denial of service (server crash) via a malformed request to the server, as demonstrated using "aaaaaa".  Assigned (20050816)  None (candidate not yet proposed)    View
10769  CVE-2004-2343  Candidate  ** DISPUTED ** Apache HTTP Server 2.0.47 and earlier allows local users to bypass .htaccess file restrictions, as specified in httpd.conf with directives such as Deny From All, by using an ErrorDocument directive. NOTE: the vendor has disputed this issue, since the .htaccess mechanism is only intended to restrict external web access, and a local user already has the privileges to perform the same operations without using ErrorDocument.  Assigned (20050816)  None (candidate not yet proposed)    View
10770  CVE-2004-2344  Candidate  Unknown vulnerability in the ASN.1/H.323/H.225 stack of VocalTec VGW120 and VGW480 allows remote attackers to cause a denial of service.  Assigned (20050816)  None (candidate not yet proposed)    View
10771  CVE-2004-2345  Candidate  Unknown multiple vulnerabilities in Oracle9i Database Server 9.0.1.4, 9.0.1.5, 9.2.0.3, and 9.2.0.4 allow local users with the ability to invoke SQL to cause a denial of service or obtain sensitive information.  Assigned (20050816)  None (candidate not yet proposed)    View

Page 1931 of 20943, showing 5 records out of 104715 total, starting on record 9651, ending on 9655

Actions