CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9957  CVE-2004-1529  Candidate  Cross-site scripting (XSS) vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary web script via the (1) type, (2) day, (3) month, or (4) year parameters in a Preview operation, or (5) event comments.  Assigned (20050218)  None (candidate not yet proposed)    View
9958  CVE-2004-1530  Candidate  SQL injection vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the (1) eid or (2) cid parameters.  Assigned (20050218)  None (candidate not yet proposed)    View
9959  CVE-2004-1531  Candidate  SQL injection vulnerability in post.php in Invision Power Board (IPB) 2.0.0 through 2.0.2 allows remote attackers to execute arbitrary SQL commands via the qpid parameter.  Assigned (20050218)  None (candidate not yet proposed)    View
9960  CVE-2004-1532  Candidate  AppServ 2.5.x and earlier installs a default username and password, which allows remote attackers to gain access.  Assigned (20050218)  None (candidate not yet proposed)    View
9961  CVE-2004-1533  Candidate  Buffer overflow in pop3svr.exe for DMS POP3 1.5.3.27 and earlier allows remote attackers to cause a denial of service (service crash) via a long (1) username or (2) password.  Assigned (20050218)  None (candidate not yet proposed)    View

Page 19766 of 20943, showing 5 records out of 104715 total, starting on record 98826, ending on 98830

Actions