CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9986  CVE-2004-1558  Candidate  Multiple stack-based buffer overflows in YPOPs! (aka YahooPOPS) 0.4 through 0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) POP3 USER command or (2) SMTP request.  Assigned (20050220)  None (candidate not yet proposed)    View
9987  CVE-2004-1559  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Wordpress 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) redirect_to, text, popupurl, or popuptitle parameters to wp-login.php, (2) redirect_url parameter to admin-header.php, (3) popuptitle, popupurl, content, or post_title parameters to bookmarklet.php, (4) cat_ID parameter to categories.php, (5) s parameter to edit.php, or (6) s or mode parameter to edit-comments.php.  Assigned (20050220)  None (candidate not yet proposed)    View
9988  CVE-2004-1560  Candidate  Microsoft SQL Server 7.0 allows remote attackers to cause a denial of service (mssqlserver service halt) via a long request to TCP port 1433, possibly triggering a buffer overflow.  Assigned (20050220)  None (candidate not yet proposed)    View
9989  CVE-2004-1561  Candidate  Buffer overflow in Icecast 2.0.1 and earlier allows remote attackers to execute arbitrary code via an HTTP request with a large number of headers.  Assigned (20050220)  None (candidate not yet proposed)    View
9990  CVE-2004-1562  Candidate  SQL injection vulnerability in redir_url.php in w-Agora 4.1.6a allows remote attackers to execute arbitrary SQL commands via the key parameter.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 19735 of 20943, showing 5 records out of 104715 total, starting on record 98671, ending on 98675

Actions