CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6042 | CVE-2002-1658 | Candidate | Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user argument. NOTE: since htdigest is normally only locally accessible and not setuid or setgid, there are few attack vectors which would lead to an escalation of privileges, unless htdigest is executed from a CGI program. Therefore this may not be a vulnerability. | Assigned (20050427) | None (candidate not yet proposed) | View | |
12512 | CVE-2005-1306 | Candidate | The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability." | Assigned (20050427) | None (candidate not yet proposed) | View | |
12513 | CVE-2005-1307 | Candidate | The (1) stopserver.sh and (2) startserver.sh scripts in Adobe Version Cue on Mac OS X uses the current working directory to find and execute the productname.sh script, which allows local users to execute arbitrary code by copying and calling the scripts from a user-controlled directory. | Assigned (20050427) | None (candidate not yet proposed) | View | |
12514 | CVE-2005-1308 | Candidate | SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desired script or HTML. | Assigned (20050427) | None (candidate not yet proposed) | View | |
12515 | CVE-2005-1309 | Candidate | Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text. | Assigned (20050427) | None (candidate not yet proposed) | View |
Page 19498 of 20943, showing 5 records out of 104715 total, starting on record 97486, ending on 97490