CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10498  CVE-2004-2072  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Mambo Open Source 4.6, and possibly earlier versions, allows remote attackers to execute script on other clients via the Itemid parameter.  Assigned (20050519)  None (candidate not yet proposed)    View
10499  CVE-2004-2073  Candidate  Linux-VServer 1.24 allows local users with root privileges on a virtual server to gain access to the filesystem outside the virtual server via a modified chroot-again exploit using the chmod command.  Assigned (20050519)  None (candidate not yet proposed)    View
10500  CVE-2004-2074  Candidate  Format string vulnerability in Dream FTP 1.02 allows local users to cause a denial of service (crash) via format string specifiers in the (1) PASS or (2) RETR commands.  Assigned (20050519)  None (candidate not yet proposed)    View
10501  CVE-2004-2075  Candidate  Sophos Anti-Virus 3.78 allows remote attackers to cause a denial of service (infinite loop) via a MIME header that is not properly terminated.  Assigned (20050519)  None (candidate not yet proposed)    View
10502  CVE-2004-2076  Candidate  Cross-site scripting (XSS) vulnerability in search.php for Jelsoft vBulletin 3.0.0 RC4 allows remote attackers to inject arbitrary web script or HTML via the query parameter.  Assigned (20050519)  None (candidate not yet proposed)    View

Page 19350 of 20943, showing 5 records out of 104715 total, starting on record 96746, ending on 96750

Actions