CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10478 | CVE-2004-2052 | Candidate | eSeSIX Thintune thin clients running firmware 2.4.38 and earlier accept any password that begins with the actual password, which makes it easier for users to conduct brute force password guessing. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10223 | CVE-2004-1795 | Candidate | Info Touch Surfnet kiosk allows local users to access the underlying filesystem via a "file://" URI. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10479 | CVE-2004-2053 | Candidate | PHP remote file inclusion vulnerability in index.php in EasyIns Stadtportal 4 allows remote attackers to execute arbitrary PHP code via the site parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10224 | CVE-2004-1796 | Candidate | PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) config[incdir] parameter to hnmain.inc.php3. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10480 | CVE-2004-2054 | Candidate | CRLF injection vulnerability in PhpBB 2.0.4 and 2.0.9 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via (1) the mode parameter to privmsg.php or (2) the redirect parameter to login.php. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 19468 of 20943, showing 5 records out of 104715 total, starting on record 97336, ending on 97340