CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10807  CVE-2004-2381  Candidate  HttpRequest.java in Jetty HTTP Server before 4.2.19 allows remote attackers to cause denial of service (memory usage and application crash) via HTTP requests with a large Content-Length.  Assigned (20050816)  None (candidate not yet proposed)    View
10808  CVE-2004-2382  Candidate  The PerfectNav plugin for Microsoft Internet Explorer allows remote attackers to cause a denial of service (browser crash) via a malformed URL such as "?".  Assigned (20050816)  None (candidate not yet proposed)    View
10809  CVE-2004-2383  Candidate  Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to bypass cross-frame scripting restrictions and capture keyboard events from other domains via an HTML document with Javascript that is outside a frameset that includes the target domain, then forcing the frameset to maintain focus. NOTE: the discloser claimed that the vendor does not categorize this as a vulnerability, but it can be used in a spoofing scenario; the discloser provides alternate scenarios. Spoofing scenarios are currently included in CVE.  Assigned (20050816)  None (candidate not yet proposed)    View
10810  CVE-2004-2384  Candidate  NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim"s player to crash when the file is opened from the command line.  Assigned (20050816)  None (candidate not yet proposed)    View
10811  CVE-2004-2385  Candidate  EMU Webmail 5.2.7 allows remote attackers to obtain sensitive path information (home directory) via an HTTP request for init.emu.  Assigned (20050816)  None (candidate not yet proposed)    View

Page 1939 of 20943, showing 5 records out of 104715 total, starting on record 9691, ending on 9695

Actions