CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10535 | CVE-2004-2109 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in (1) imagezoom.asp or (2) recommend.asp in Q-Shop allow remote attackers to execute arbitrary script and steal the user session ID via Javascript in a URL. | Assigned (20050527) | None (candidate not yet proposed) | View | |
10536 | CVE-2004-2110 | Candidate | SQL injection vulnerability in register.php in Phorum before 3.4.6 allows remote attackers to execute arbitrary SQL commands via the hide_email parameter. | Assigned (20050527) | None (candidate not yet proposed) | View | |
10537 | CVE-2004-2111 | Candidate | Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename. | Assigned (20050527) | None (candidate not yet proposed) | View | |
10538 | CVE-2004-2112 | Candidate | Directory traversal vulnerability in BremsServer 1.2.4 allows remote attackers to read arbitrary files via ".." (dot dot) sequences in the URL. | Assigned (20050527) | None (candidate not yet proposed) | View | |
10539 | CVE-2004-2113 | Candidate | Cross-site scripting (XSS) vulnerability in BremsServer 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the URL. | Assigned (20050527) | None (candidate not yet proposed) | View |
Page 19328 of 20943, showing 5 records out of 104715 total, starting on record 96636, ending on 96640