CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9818  CVE-2004-1390  Candidate  Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a long argument to the (1) -F, (2) name, (3) en, (4) upscript, (5) downscript, (6) retries, (7) timeout, (8) scriptdetach, (9) noscript, (10) nodetach, (11) remote_mac, or (12) local_mac flags.  Assigned (20050205)  None (candidate not yet proposed)    View
9819  CVE-2004-1391  Candidate  Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious mount program.  Assigned (20050205)  None (candidate not yet proposed)    View
9820  CVE-2004-1392  Candidate  PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a file: URL argument to the curl_init function.  Assigned (20050205)  None (candidate not yet proposed)    View
11424  CVE-2005-0218  Candidate  ClamAV 0.80 and earlier allows remote attackers to bypass virus scanning via a base64 encoded image in a data: (RFC 2397) URL.  Assigned (20050205)  None (candidate not yet proposed)    View
11425  CVE-2005-0219  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Gallery 1.3.4-pl1 allow remote attackers to inject arbitrary web script or HTML via (1) the index field in add_comment.php, (2) set_albumName, (3) slide_index, (4) slide_full, (5) slide_loop, (6) slide_pause, (7) slide_dir fields in slideshow_low.php, or (8) username field in search.php.  Assigned (20050205)  None (candidate not yet proposed)    View

Page 19844 of 20943, showing 5 records out of 104715 total, starting on record 99216, ending on 99220

Actions