CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6085  CVE-2002-1703  Candidate  Cross-site scripting vulnerability (XSS) in auction.cgi for Mewsoft NetAuction 3.0 allows remote attackers to execute arbitrary script as other users via the Term parameter.  Assigned (20050621)  None (candidate not yet proposed)    View
6084  CVE-2002-1702  Candidate  Cross-site scripting vulnerability (XSS) in DeltaScripts PHP Classifieds 6.0.5 allows remote attackers to execute arbitrary script as other users via the URL parameter.  Assigned (20050621)  None (candidate not yet proposed)    View
6083  CVE-2002-1700  Candidate  Cross-site scripting vulnerability (XSS) in the missing template handler in Macromedia ColdFusion MX allows remote attackers to execute arbitrary script as other users by injecting script into the HTTP request for the name of a template, which is not filtered in the resulting 404 error message.  Assigned (20050621)  None (candidate not yet proposed)    View
6082  CVE-2002-1699  Candidate  SQL injection vulnerability in ASP Client Check (ASPCC) 1.3 and 1.5 allows remote attackers to bypass authentication and gain unauthorized access via the password field.  Assigned (20050621)  None (candidate not yet proposed)    View
6081  CVE-2002-1698  Candidate  Buffer overflow in Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via a long FN (font) argument in the message header.  Assigned (20050621)  None (candidate not yet proposed)    View

Page 19727 of 20943, showing 5 records out of 104715 total, starting on record 98631, ending on 98635

Actions