CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9896  CVE-2004-1468  Candidate  The web mail functionality in Usermin 1.x and Webmin 1.x allows remote attackers to execute arbitrary commands via shell metacharacters in an e-mail message.  Assigned (20050213)  None (candidate not yet proposed)    View
9897  CVE-2004-1469  Candidate  Format string vulnerability in the log function in SUS 2.0.2, and other versions before 2.0.6, allows local users to execute arbitrary code via format string specifiers in a command line argument that is passed directly to syslog.  Assigned (20050213)  None (candidate not yet proposed)    View
9898  CVE-2004-1470  Candidate  CRLF injection vulnerability in SnipSnap 0.5.2a, and other versions before 1.0b1, allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server.  Assigned (20050213)  None (candidate not yet proposed)    View
9899  CVE-2004-1471  Candidate  Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commit access to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a wrapper line.  Assigned (20050213)  None (candidate not yet proposed)    View
9900  CVE-2004-1472  Candidate  Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 allow remote attackers to cause a denial of service (device freeze) via a fast UDP port scan on the WAN interface.  Assigned (20050213)  None (candidate not yet proposed)    View

Page 19796 of 20943, showing 5 records out of 104715 total, starting on record 98976, ending on 98980

Actions