CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11575 | CVE-2005-0369 | Candidate | Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 earlier allows remote attackers to cause a denial of service (application crash) via a packet with a large (1) descriptor ID or (2) claim_id, which exceeds the boundaries of an array. | Assigned (20050211) | None (candidate not yet proposed) | View | |
11576 | CVE-2005-0370 | Candidate | Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 and earlier allow remote attackers to cause a denial of service (network disconnection) via an empty UDP packet, which is not properly distinguished from the "no new packets" state of the associated socket. | Assigned (20050211) | None (candidate not yet proposed) | View | |
11577 | CVE-2005-0371 | Candidate | Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 and earlier allow remote attackers to cause a denial of service (freeze) via a large number of player connections that do not send any data. | Assigned (20050211) | None (candidate not yet proposed) | View | |
11520 | CVE-2005-0314 | Candidate | Cross-site scripting (XSS) vulnerability in user.php in Magic Winmail Server 4.0 Build 1112 allows remote attackers to inject arbitrary web script or HTML via the personal information fields. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11521 | CVE-2005-0315 | Candidate | The FTP service in Magic Winmail Server 4.0 Build 1112 does not verify that the IP address in a PORT command is the same as the IP address of the user of the FTP session, which allows remote authenticated users to use the server as an intermediary for port scanning. | Assigned (20050210) | None (candidate not yet proposed) | View |
Page 19812 of 20943, showing 5 records out of 104715 total, starting on record 99056, ending on 99060