CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10535  CVE-2004-2109  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in (1) imagezoom.asp or (2) recommend.asp in Q-Shop allow remote attackers to execute arbitrary script and steal the user session ID via Javascript in a URL.  Assigned (20050527)  None (candidate not yet proposed)    View
10536  CVE-2004-2110  Candidate  SQL injection vulnerability in register.php in Phorum before 3.4.6 allows remote attackers to execute arbitrary SQL commands via the hide_email parameter.  Assigned (20050527)  None (candidate not yet proposed)    View
10537  CVE-2004-2111  Candidate  Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.  Assigned (20050527)  None (candidate not yet proposed)    View
10538  CVE-2004-2112  Candidate  Directory traversal vulnerability in BremsServer 1.2.4 allows remote attackers to read arbitrary files via ".." (dot dot) sequences in the URL.  Assigned (20050527)  None (candidate not yet proposed)    View
10539  CVE-2004-2113  Candidate  Cross-site scripting (XSS) vulnerability in BremsServer 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the URL.  Assigned (20050527)  None (candidate not yet proposed)    View

Page 19328 of 20943, showing 5 records out of 104715 total, starting on record 96636, ending on 96640

Actions