CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10230 | CVE-2004-1802 | Candidate | Chat Anywhere 2.72 and earlier allows remote attackers to hide their IP address by using %00 before the nickname, which causes the IP address to be displayed as $IP$ on the administration web page. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10486 | CVE-2004-2060 | Candidate | ASPRunner 2.4 stores the database under the web root in the db directory, which may allow remote attackers to obtain the database via a direct request to the database filename, which is predictable based on table and field names. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10231 | CVE-2004-1804 | Candidate | wMCam server 2.1.348 allows remote attackers to cause a denial of service (no new connections) via multiple malformed HTTP requests without the GET command. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10487 | CVE-2004-2061 | Candidate | RiSearch 1.0.01 and RiSearch Pro 3.2.06 allows remote attackers to use the show.pl script as an open proxy, or read arbitrary local files, by setting the url parameter to a (1) http://, (2) ftp://, or (3) file:// URL. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10232 | CVE-2004-1805 | Candidate | Format string vulnerability in games using the Epic Games Unreal Engine 436 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in class names. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 19471 of 20943, showing 5 records out of 104715 total, starting on record 97351, ending on 97355