CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12849  CVE-2005-1643  Candidate  The ZCom_BitStream::Deserialize function in Zoidcom 1.0 beta 4 and earlier allows remote attackers to cause a denial of service via a crafted UDP packet with a large size value, which causes a memory allocation error or an out-of-bounds read.  Assigned (20050517)  None (candidate not yet proposed)    View
12850  CVE-2005-1644  Candidate  Cross-site scripting (XSS) vulnerability in guestbook.php for 1Two Livre d"Or 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) livreornom, (2) livreoremail, or (3) livreormessage parameters.  Assigned (20050517)  None (candidate not yet proposed)    View
12851  CVE-2005-1645  Candidate  Keyvan1 ImageGallery stores the image.mdb database under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information.  Assigned (20050517)  None (candidate not yet proposed)    View
12852  CVE-2005-1646  Candidate  The default installation of Fastream NETFile FTP/Web Server 7.4.6, which supports FXP, does not require that the IP address in a PORT command be the same as the IP of the logged in user, which allows remote attackers to conduct FTP Bounce attacks to bypass firewall rules or cause a denial of service.  Assigned (20050517)  None (candidate not yet proposed)    View
10496  CVE-2004-2070  Candidate  The Altiris Client Service for Windows 5.6 SP1 Hotfix E (5.6.181) allows local users to execute arbitrary commands by opening the AClient tray icon and using the View Log File option, a different vulnerability than CVE-2005-1590.  Assigned (20050516)  None (candidate not yet proposed)    View

Page 19367 of 20943, showing 5 records out of 104715 total, starting on record 96831, ending on 96835

Actions