CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10119 | CVE-2004-1691 | Candidate | The Web Server in DNS4Me 3.0.0.4 allows remote attackers to cause a denial of service (CPU consumption and crash) via a large amount of data. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10120 | CVE-2004-1692 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Mambo 4.5 (1.0.9) allows remote attackers to inject arbitrary web script or HTML via the (1) Itemid, (2) mosmsg, or (3) limit parameters. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10121 | CVE-2004-1693 | Candidate | PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10122 | CVE-2004-1694 | Candidate | Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access. | Assigned (20050221) | None (candidate not yet proposed) | View | |
10123 | CVE-2004-1695 | Candidate | EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administration feature via a URL that contains an extra leading / (slash). | Assigned (20050221) | None (candidate not yet proposed) | View |
Page 19729 of 20943, showing 5 records out of 104715 total, starting on record 98641, ending on 98645