CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10812 | CVE-2004-2386 | Candidate | Format string vulnerability in the LogMsg function in sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code via format string specifiers passed from the HandleCPCCommand function. | Assigned (20050816) | None (candidate not yet proposed) | View | |
10813 | CVE-2004-2387 | Candidate | Buffer overflow in the HandleCPCCommand function of sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code. | Assigned (20050816) | None (candidate not yet proposed) | View | |
10814 | CVE-2004-2388 | Candidate | rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the structure to be overwritten by the authenticate function and assign privileges to the wrong user. | Assigned (20050816) | None (candidate not yet proposed) | View | |
6505 | CVE-2002-2123 | Candidate | PHP remote file inclusion vulnerability in publish_xp_docs.php for Gallery 1.3.2 allows remote attackers to inject arbitrary PHP code by specifying a URL to an init.php file in the GALLERY_BASEDIR parameter. | Assigned (20050816) | None (candidate not yet proposed) | View | |
8044 | CVE-2003-1220 | Candidate | BEA WebLogic Server proxy plugin for BEA Weblogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of service (proxy plugin crash) via a malformed URL. | Assigned (20050816) | None (candidate not yet proposed) | View |
Page 1940 of 20943, showing 5 records out of 104715 total, starting on record 9696, ending on 9700