CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6042  CVE-2002-1658  Candidate  Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user argument. NOTE: since htdigest is normally only locally accessible and not setuid or setgid, there are few attack vectors which would lead to an escalation of privileges, unless htdigest is executed from a CGI program. Therefore this may not be a vulnerability.  Assigned (20050427)  None (candidate not yet proposed)    View
12512  CVE-2005-1306  Candidate  The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."  Assigned (20050427)  None (candidate not yet proposed)    View
12513  CVE-2005-1307  Candidate  The (1) stopserver.sh and (2) startserver.sh scripts in Adobe Version Cue on Mac OS X uses the current working directory to find and execute the productname.sh script, which allows local users to execute arbitrary code by copying and calling the scripts from a user-controlled directory.  Assigned (20050427)  None (candidate not yet proposed)    View
12514  CVE-2005-1308  Candidate  SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desired script or HTML.  Assigned (20050427)  None (candidate not yet proposed)    View
12515  CVE-2005-1309  Candidate  Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.  Assigned (20050427)  None (candidate not yet proposed)    View

Page 19498 of 20943, showing 5 records out of 104715 total, starting on record 97486, ending on 97490

Actions