CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10230  CVE-2004-1802  Candidate  Chat Anywhere 2.72 and earlier allows remote attackers to hide their IP address by using %00 before the nickname, which causes the IP address to be displayed as $IP$ on the administration web page.  Assigned (20050504)  None (candidate not yet proposed)    View
10486  CVE-2004-2060  Candidate  ASPRunner 2.4 stores the database under the web root in the db directory, which may allow remote attackers to obtain the database via a direct request to the database filename, which is predictable based on table and field names.  Assigned (20050504)  None (candidate not yet proposed)    View
10231  CVE-2004-1804  Candidate  wMCam server 2.1.348 allows remote attackers to cause a denial of service (no new connections) via multiple malformed HTTP requests without the GET command.  Assigned (20050504)  None (candidate not yet proposed)    View
10487  CVE-2004-2061  Candidate  RiSearch 1.0.01 and RiSearch Pro 3.2.06 allows remote attackers to use the show.pl script as an open proxy, or read arbitrary local files, by setting the url parameter to a (1) http://, (2) ftp://, or (3) file:// URL.  Assigned (20050504)  None (candidate not yet proposed)    View
10232  CVE-2004-1805  Candidate  Format string vulnerability in games using the Epic Games Unreal Engine 436 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in class names.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 19471 of 20943, showing 5 records out of 104715 total, starting on record 97351, ending on 97355

Actions