CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7350  CVE-2003-0523  Candidate  Cross-site scripting (XSS) vulnerability in msg.asp for certain versions of ProductCart allow remote attackers to execute arbitrary web script via the message parameter.  Assigned (20030708)  None (candidate not yet proposed)    View
7349  CVE-2003-0522  Candidate  Multiple SQL injection vulnerabilities in ProductCart 1.5 through 2 allow remote attackers to (1) gain access to the admin control panel via the idadmin parameter to login.asp or (2) gain other privileges via the Email parameter to Custva.asp.  Assigned (20030708)  None (candidate not yet proposed)    View
7348  CVE-2003-0521  Candidate  Cross-site scripting (XSS) vulnerability in cPanel 6.4.2 allows remote attackers to insert arbitrary HTML and possibly gain cPanel administrator privileges via script in a URL that is logged but not properly quoted when displayed via the (1) Error Log or (2) Latest Visitors screens.  Assigned (20030708)  None (candidate not yet proposed)    View
7347  CVE-2003-0520  Candidate  Trillian 1.0 Pro and 0.74 Freeware allows remote attackers to cause a denial of service (crash) via a TypingUser message in which the "TypingUser" string has been modified.  Assigned (20030708)  None (candidate not yet proposed)    View
7346  CVE-2003-0519  Candidate  Certain versions of Internet Explorer 5 and 6, in certain Windows environments, allow remote attackers to cause a denial of service (freeze) via a URL to C:aux (MS-DOS device name) and possibly other devices.  Assigned (20030708)  None (candidate not yet proposed)    View

Page 19474 of 20943, showing 5 records out of 104715 total, starting on record 97366, ending on 97370

Actions