CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10156  CVE-2004-1728  Candidate  Buffer overflow in British National Corpus SARA (sarad) allows remote attackers to execute arbitrary code by calling the client with a long string.  Assigned (20050226)  None (candidate not yet proposed)    View
10157  CVE-2004-1729  Candidate  Cross-site scripting (XSS) vulnerability in Nihuo Web Log Analyzer 1.6 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header.  Assigned (20050226)  None (candidate not yet proposed)    View
10158  CVE-2004-1730  Candidate  Cross-site scripting (XSS) vulnerability in Mantis bugtracker allows remote attackers to inject arbitrary web script or HTML via (1) the return parameter to login_page.php, (2) e-mail field in signup.php, (3) action parameter to login_select_proj_page.php, or (4) hide_status parameter to view_all_set.php.  Assigned (20050226)  None (candidate not yet proposed)    View
10159  CVE-2004-1731  Candidate  signup_page.php in Mantis bugtracker allows remote attackers to send e-mail bombs by creating multiple users and providing the same e-mail address.  Assigned (20050226)  None (candidate not yet proposed)    View
10160  CVE-2004-1732  Candidate  SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers to execute arbitrary SQL commands via the folderid parameter.  Assigned (20050226)  None (candidate not yet proposed)    View

Page 19701 of 20943, showing 5 records out of 104715 total, starting on record 98501, ending on 98505

Actions