CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8000  CVE-2003-1176  Candidate  post_message_form.asp in Web Wiz Forums 6.34 through 7.5, when quote mode is used, allows remote attackers to read or write to private forums by modifying the FID (forum ID) parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
7999  CVE-2003-1175  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Sympoll 1.5 allows remote attackers to inject arbitrary web script or HTML via the vo parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
7998  CVE-2003-1174  Candidate  Buffer overflow in NullSoft Shoutcast Server 1.9.2 allows local users to cause a denial of service via (1) icy-name followed by a long server name or (2) icy-url followed by a long URL.  Assigned (20050504)  None (candidate not yet proposed)    View
7997  CVE-2003-1173  Candidate  Centrinity FirstClass 7.1 allows remote attackers to access sensitive information by appending search to the end of the URL and checking all of the search option checkboxes and leaving the text field blank, which will return all files in the searched directory.  Assigned (20050504)  None (candidate not yet proposed)    View
7996  CVE-2003-1172  Candidate  Directory traversal vulnerability in the view-source sample file in Apache Software Foundation Cocoon 2.1 and 2.2 allows remote attackers to access arbitrary files via a .. (dot dot) in the filename parameter.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 19344 of 20943, showing 5 records out of 104715 total, starting on record 96716, ending on 96720

Actions