CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9876  CVE-2004-1448  Candidate  Jetbox One 2.0.8 and possibly other versions allow remote attackers with Author privileges in the IMAGES module to upload PHP files and execute arbitrary code.  Assigned (20050213)  None (candidate not yet proposed)    View
9877  CVE-2004-1449  Candidate  Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of files on a user"s hard drive by obscuring a file upload control and tricking the user into dragging text into that control.  Assigned (20050213)  None (candidate not yet proposed)    View
9878  CVE-2004-1450  Candidate  Unknown vulnerability in LiveConnect in Mozilla 1.7 beta allows remote attackers to read arbitrary files in known locations.  Assigned (20050213)  None (candidate not yet proposed)    View
9879  CVE-2004-1451  Candidate  Mozilla before 1.6 does not display the entire URL in the status bar when a link contains %00, which could allow remote attackers to trick users into clicking on unknown or untrusted sites and facilitate phishing attacks.  Assigned (20050213)  None (candidate not yet proposed)    View
9880  CVE-2004-1452  Candidate  Tomcat before 5.0.27-r3 in Gentoo Linux sets the default permissions on the init scripts as tomcat:tomcat, but executes the scripts with root privileges, which could allow local users in the tomcat group to execute arbitrary commands as root by modifying the scripts.  Assigned (20050213)  None (candidate not yet proposed)    View

Page 19792 of 20943, showing 5 records out of 104715 total, starting on record 98956, ending on 98960

Actions