CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10812  CVE-2004-2386  Candidate  Format string vulnerability in the LogMsg function in sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code via format string specifiers passed from the HandleCPCCommand function.  Assigned (20050816)  None (candidate not yet proposed)    View
10813  CVE-2004-2387  Candidate  Buffer overflow in the HandleCPCCommand function of sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code.  Assigned (20050816)  None (candidate not yet proposed)    View
10814  CVE-2004-2388  Candidate  rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the structure to be overwritten by the authenticate function and assign privileges to the wrong user.  Assigned (20050816)  None (candidate not yet proposed)    View
6505  CVE-2002-2123  Candidate  PHP remote file inclusion vulnerability in publish_xp_docs.php for Gallery 1.3.2 allows remote attackers to inject arbitrary PHP code by specifying a URL to an init.php file in the GALLERY_BASEDIR parameter.  Assigned (20050816)  None (candidate not yet proposed)    View
8044  CVE-2003-1220  Candidate  BEA WebLogic Server proxy plugin for BEA Weblogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of service (proxy plugin crash) via a malformed URL.  Assigned (20050816)  None (candidate not yet proposed)    View

Page 1940 of 20943, showing 5 records out of 104715 total, starting on record 9696, ending on 9700

Actions