CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10119  CVE-2004-1691  Candidate  The Web Server in DNS4Me 3.0.0.4 allows remote attackers to cause a denial of service (CPU consumption and crash) via a large amount of data.  Assigned (20050221)  None (candidate not yet proposed)    View
10120  CVE-2004-1692  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Mambo 4.5 (1.0.9) allows remote attackers to inject arbitrary web script or HTML via the (1) Itemid, (2) mosmsg, or (3) limit parameters.  Assigned (20050221)  None (candidate not yet proposed)    View
10121  CVE-2004-1693  Candidate  PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code.  Assigned (20050221)  None (candidate not yet proposed)    View
10122  CVE-2004-1694  Candidate  Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access.  Assigned (20050221)  None (candidate not yet proposed)    View
10123  CVE-2004-1695  Candidate  EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administration feature via a URL that contains an extra leading / (slash).  Assigned (20050221)  None (candidate not yet proposed)    View

Page 19729 of 20943, showing 5 records out of 104715 total, starting on record 98641, ending on 98645

Actions