CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9818 | CVE-2004-1390 | Candidate | Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a long argument to the (1) -F, (2) name, (3) en, (4) upscript, (5) downscript, (6) retries, (7) timeout, (8) scriptdetach, (9) noscript, (10) nodetach, (11) remote_mac, or (12) local_mac flags. | Assigned (20050205) | None (candidate not yet proposed) | View | |
9819 | CVE-2004-1391 | Candidate | Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious mount program. | Assigned (20050205) | None (candidate not yet proposed) | View | |
9820 | CVE-2004-1392 | Candidate | PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a file: URL argument to the curl_init function. | Assigned (20050205) | None (candidate not yet proposed) | View | |
11424 | CVE-2005-0218 | Candidate | ClamAV 0.80 and earlier allows remote attackers to bypass virus scanning via a base64 encoded image in a data: (RFC 2397) URL. | Assigned (20050205) | None (candidate not yet proposed) | View | |
11425 | CVE-2005-0219 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Gallery 1.3.4-pl1 allow remote attackers to inject arbitrary web script or HTML via (1) the index field in add_comment.php, (2) set_albumName, (3) slide_index, (4) slide_full, (5) slide_loop, (6) slide_pause, (7) slide_dir fields in slideshow_low.php, or (8) username field in search.php. | Assigned (20050205) | None (candidate not yet proposed) | View |
Page 19844 of 20943, showing 5 records out of 104715 total, starting on record 99216, ending on 99220