CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5985  CVE-2002-1601  Candidate  The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.  Assigned (20050320)  None (candidate not yet proposed)    View
4219  CVE-2001-1416  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags.  Assigned (20050320)  None (candidate not yet proposed)    View
4220  CVE-2001-1417  Candidate  AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application hang or crash) via a buddy icon GIF file whose length and width values are larger than the actual image data.  Assigned (20050320)  None (candidate not yet proposed)    View
4221  CVE-2001-1418  Candidate  AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application crash) via a malformed WAV file.  Assigned (20050320)  None (candidate not yet proposed)    View
4222  CVE-2001-1419  Candidate  AOL Instant Messenger (AIM) 4.7.2480 and earlier allows remote attackers to cause a denial of service (application crash) via an instant message that contains a large amount of "<!--" HTML comments.  Assigned (20050320)  None (candidate not yet proposed)    View

Page 19628 of 20943, showing 5 records out of 104715 total, starting on record 98136, ending on 98140

Actions