CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6044 | CVE-2002-1660 | Candidate | calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the command parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10396 | CVE-2004-1970 | Candidate | Samsung SmartEther SS6215S switch, and possibly other Samsung switches, allows remote attackers and local users to gain administrative access by providing the admin username followed by a password that is the maximum allowed length, then pressing the enter key after the resulting error message. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10397 | CVE-2004-1971 | Candidate | modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to gain sensitive information via an HTTP request with an invalid (1) catid or (2) clipid parameter, which reveals the full path in an error message. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10398 | CVE-2004-1972 | Candidate | SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execute arbitrary SQL code via the (1) clipid or (2) catid parameters in a viewclip, viewcat, or voteclip action. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10399 | CVE-2004-1973 | Candidate | DiGi Web Server allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request that contains a large number of / (slash) characters, which consumes resources when DiGi converts the slashes to (backslash) characters. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 19448 of 20943, showing 5 records out of 104715 total, starting on record 97236, ending on 97240