CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10439 | CVE-2004-2013 | Candidate | Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10440 | CVE-2004-2014 | Candidate | Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the name of the file being downloaded. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10441 | CVE-2004-2015 | Candidate | Cross-site scripting (XSS) vulnerability in WebCT Campus Edition allows remote attackers to inject arbitrary HTML or web script via (1) iframe, (2) img, or (3) object tags. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10442 | CVE-2004-2016 | Candidate | Stack-based buffer overflow in the HTTP server in NetChat 7.3 and earlier allows remote attackers to execute arbitrary code via a long GET request. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10443 | CVE-2004-2017 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Turbo Traffic Trader C (TTT-C) 1.0 allow remote attackers to inject arbitrary HTML or web script, as demonstrated via (1) the link parameter to ttt-out, (2) the X-Forwarded-For header in a GET request to ttt-in, (3) the Referer header in a GET request to ttt-in, or the (4) site name or (5) site URL fields in the main control panel. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 19457 of 20943, showing 5 records out of 104715 total, starting on record 97281, ending on 97285