CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10478  CVE-2004-2052  Candidate  eSeSIX Thintune thin clients running firmware 2.4.38 and earlier accept any password that begins with the actual password, which makes it easier for users to conduct brute force password guessing.  Assigned (20050504)  None (candidate not yet proposed)    View
10223  CVE-2004-1795  Candidate  Info Touch Surfnet kiosk allows local users to access the underlying filesystem via a "file://" URI.  Assigned (20050504)  None (candidate not yet proposed)    View
10479  CVE-2004-2053  Candidate  PHP remote file inclusion vulnerability in index.php in EasyIns Stadtportal 4 allows remote attackers to execute arbitrary PHP code via the site parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10224  CVE-2004-1796  Candidate  PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) config[incdir] parameter to hnmain.inc.php3.  Assigned (20050504)  None (candidate not yet proposed)    View
10480  CVE-2004-2054  Candidate  CRLF injection vulnerability in PhpBB 2.0.4 and 2.0.9 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via (1) the mode parameter to privmsg.php or (2) the redirect parameter to login.php.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 19468 of 20943, showing 5 records out of 104715 total, starting on record 97336, ending on 97340

Actions