CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10439  CVE-2004-2013  Candidate  Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.  Assigned (20050504)  None (candidate not yet proposed)    View
10440  CVE-2004-2014  Candidate  Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the name of the file being downloaded.  Assigned (20050504)  None (candidate not yet proposed)    View
10441  CVE-2004-2015  Candidate  Cross-site scripting (XSS) vulnerability in WebCT Campus Edition allows remote attackers to inject arbitrary HTML or web script via (1) iframe, (2) img, or (3) object tags.  Assigned (20050504)  None (candidate not yet proposed)    View
10442  CVE-2004-2016  Candidate  Stack-based buffer overflow in the HTTP server in NetChat 7.3 and earlier allows remote attackers to execute arbitrary code via a long GET request.  Assigned (20050504)  None (candidate not yet proposed)    View
10443  CVE-2004-2017  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Turbo Traffic Trader C (TTT-C) 1.0 allow remote attackers to inject arbitrary HTML or web script, as demonstrated via (1) the link parameter to ttt-out, (2) the X-Forwarded-For header in a GET request to ttt-in, (3) the Referer header in a GET request to ttt-in, or the (4) site name or (5) site URL fields in the main control panel.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 19457 of 20943, showing 5 records out of 104715 total, starting on record 97281, ending on 97285

Actions