CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9742 | CVE-2004-1314 | Candidate | Safari 1.x allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability, a different vulnerability than CVE-2004-1122. | Assigned (20041221) | None (candidate not yet proposed) | View | |
9724 | CVE-2004-1296 | Candidate | The (1) eqn2graph and (2) pic2graph scripts in groff 1.18.1 allow local users to overwrite arbitrary files via a symlink attack on temporary files. | Assigned (20041221) | None (candidate not yet proposed) | View | |
9728 | CVE-2004-1300 | Candidate | Buffer overflow in the open_aiff_file function in demux_aiff.c for xine-lib (libxine) 1-rc7 allows remote attackers to execute arbitrary code via a crafted AIFF file. | Assigned (20041220) | None (candidate not yet proposed) | View | |
9729 | CVE-2004-1301 | Candidate | Buffer overflow in the book_format_sql function in format.c for xlreader 0.9.0 allows remote attackers to execute arbitrary code via a crafted Excel (XLS) file. | Assigned (20041220) | None (candidate not yet proposed) | View | |
9730 | CVE-2004-1302 | Candidate | The id3tag_sort function in id3tag.c for YAMT 0.5 allows remote attackers to execute arbitrary commands via an MP3 file with double quotes in the Artist tag. | Assigned (20041220) | None (candidate not yet proposed) | View |
Page 19908 of 20943, showing 5 records out of 104715 total, starting on record 99536, ending on 99540