CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11575  CVE-2005-0369  Candidate  Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 earlier allows remote attackers to cause a denial of service (application crash) via a packet with a large (1) descriptor ID or (2) claim_id, which exceeds the boundaries of an array.  Assigned (20050211)  None (candidate not yet proposed)    View
11576  CVE-2005-0370  Candidate  Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 and earlier allow remote attackers to cause a denial of service (network disconnection) via an empty UDP packet, which is not properly distinguished from the "no new packets" state of the associated socket.  Assigned (20050211)  None (candidate not yet proposed)    View
11577  CVE-2005-0371  Candidate  Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 and earlier allow remote attackers to cause a denial of service (freeze) via a large number of player connections that do not send any data.  Assigned (20050211)  None (candidate not yet proposed)    View
11520  CVE-2005-0314  Candidate  Cross-site scripting (XSS) vulnerability in user.php in Magic Winmail Server 4.0 Build 1112 allows remote attackers to inject arbitrary web script or HTML via the personal information fields.  Assigned (20050210)  None (candidate not yet proposed)    View
11521  CVE-2005-0315  Candidate  The FTP service in Magic Winmail Server 4.0 Build 1112 does not verify that the IP address in a PORT command is the same as the IP address of the user of the FTP session, which allows remote authenticated users to use the server as an intermediary for port scanning.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 19812 of 20943, showing 5 records out of 104715 total, starting on record 99056, ending on 99060

Actions