CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8015 | CVE-2003-1191 | Candidate | chatbox.php in e107 0.554 and 0.603 allows remote attackers to cause a denial of service (pages fail to load) via HTML in the Name field, which prevents the main.php form from being loaded. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10319 | CVE-2004-1892 | Candidate | Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, allows remote attackers to execute arbitrary code via a long string. | Assigned (20050504) | None (candidate not yet proposed) | View | |
8016 | CVE-2003-1192 | Candidate | Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET request. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10320 | CVE-2004-1893 | Candidate | Dreamweaver MX, when "Using Driver On Testing Server" or "Using DSN on Testing Server" is selected, uploads the mmhttpdb.asp script to the web site but does not require authentication, which allows remote attackers to obtain sensitive information and possibly execute arbitrary SQL commands via a direct request to mmhttpdb.asp. | Assigned (20050504) | None (candidate not yet proposed) | View | |
8017 | CVE-2003-1193 | Candidate | Multiple SQL injection vulnerabilities in the Portal DB (1) List of Values (LOVs), (2) Forms, (3) Hierarchy, and (4) XML components packages in Oracle Oracle9i Application Server 9.0.2.00 through 3.0.9.8.5 allow remote attackers to execute arbitrary SQL commands via the URL. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 19430 of 20943, showing 5 records out of 104715 total, starting on record 97146, ending on 97150