CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5725  CVE-2002-1341  Candidate  Cross-site scripting (XSS) vulnerability in read_body.php for SquirrelMail 1.2.10, 1.2.9, and earlier allows remote attackers to insert script and HTML via the (1) mailbox and (2) passed_id parameters.  Modified (20071113)  ACCEPT(3) Cole, Cox, Green    View
5724  CVE-2002-1340  Candidate  The "ConnectionFile" property in the DataSourceControl component in Office Web Components (OWC) 10 allows remote attackers to determine the existence of local files by detecting an exception.  Proposed (20030317)  ACCEPT(1) Baker | NOOP(2) Cole, Cox | REVIEWING(1) Wall    View
5723  CVE-2002-1339  Candidate  The "XMLURL" property in the Spreadsheet component of Office Web Components (OWC) 10 follows redirections, which allows remote attackers to determine the existence of local files based on exceptions, or to read WorkSheet XML files.  Proposed (20030317)  ACCEPT(1) Baker | NOOP(2) Cole, Cox | REVIEWING(1) Wall    View
5722  CVE-2002-1338  Candidate  The Load method in the Chart component of Office Web Components (OWC) 9 and 10 generates an exception when a specified file does not exist, which allows remote attackers to determine the existence of local files.  Modified (20050326)  ACCEPT(1) Baker | NOOP(2) Cole, Cox | REVIEWING(1) Wall    View
5721  CVE-2002-1337  Entry  Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.        View

Page 19799 of 20943, showing 5 records out of 104715 total, starting on record 98991, ending on 98995

Actions