CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9906  CVE-2004-1478  Candidate  JRun 4.0 does not properly generate and handle the JSESSIONID, which allows remote attackers to perform a session fixation attack and hijack a user"s HTTP session.  Assigned (20050213)  None (candidate not yet proposed)    View
9907  CVE-2004-1479  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0928. Reason: This candidate is a duplicate of CVE-2004-0928. Notes: All CVE users should reference CVE-2004-0928 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050213)  None (candidate not yet proposed)    View
9908  CVE-2004-1480  Candidate  Unknown vulnerability in the management station in HP StorageWorks Command View XP 1.8B and earlier allows remote attackers to bypass access restrictions.  Assigned (20050213)  None (candidate not yet proposed)    View
9909  CVE-2004-1481  Candidate  Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Windows or Mac OS, allows remote attackers to execute arbitrary code via a SMIL file and a .rm movie file with a large length field for the data chunk, which leads to a heap-based buffer overflow.  Assigned (20050213)  None (candidate not yet proposed)    View
9910  CVE-2004-1482  Candidate  The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.  Assigned (20050213)  None (candidate not yet proposed)    View

Page 19798 of 20943, showing 5 records out of 104715 total, starting on record 98986, ending on 98990

Actions