CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7350 | CVE-2003-0523 | Candidate | Cross-site scripting (XSS) vulnerability in msg.asp for certain versions of ProductCart allow remote attackers to execute arbitrary web script via the message parameter. | Assigned (20030708) | None (candidate not yet proposed) | View | |
7349 | CVE-2003-0522 | Candidate | Multiple SQL injection vulnerabilities in ProductCart 1.5 through 2 allow remote attackers to (1) gain access to the admin control panel via the idadmin parameter to login.asp or (2) gain other privileges via the Email parameter to Custva.asp. | Assigned (20030708) | None (candidate not yet proposed) | View | |
7348 | CVE-2003-0521 | Candidate | Cross-site scripting (XSS) vulnerability in cPanel 6.4.2 allows remote attackers to insert arbitrary HTML and possibly gain cPanel administrator privileges via script in a URL that is logged but not properly quoted when displayed via the (1) Error Log or (2) Latest Visitors screens. | Assigned (20030708) | None (candidate not yet proposed) | View | |
7347 | CVE-2003-0520 | Candidate | Trillian 1.0 Pro and 0.74 Freeware allows remote attackers to cause a denial of service (crash) via a TypingUser message in which the "TypingUser" string has been modified. | Assigned (20030708) | None (candidate not yet proposed) | View | |
7346 | CVE-2003-0519 | Candidate | Certain versions of Internet Explorer 5 and 6, in certain Windows environments, allow remote attackers to cause a denial of service (freeze) via a URL to C:aux (MS-DOS device name) and possibly other devices. | Assigned (20030708) | None (candidate not yet proposed) | View |
Page 19474 of 20943, showing 5 records out of 104715 total, starting on record 97366, ending on 97370