CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9590 | CVE-2004-1162 | Candidate | The unison command in scponly before 4.0 does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via the (1) -rshcmd or (2) -sshcmd flags. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9591 | CVE-2004-1163 | Candidate | Cisco CNS Network Registrar Central Configuration Management (CCM) server 6.0 through 6.1.1.3 allows remote attackers to cause a denial of service (CPU consumption) by ending a connection after sending a certain sequence of packets. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9592 | CVE-2004-1164 | Candidate | The lock manager in Cisco CNS Network Registrar 6.0 through 6.1.1.3 allows remote attackers to cause a denial of service (process crash) via a certain "unexpected packet sequence." | Assigned (20041209) | None (candidate not yet proposed) | View | |
9593 | CVE-2004-1165 | Candidate | Konqueror 3.3.1 allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the commands to be inserted into the resulting FTP session, as demonstrated using a PORT command. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9594 | CVE-2004-1166 | Candidate | CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the commands to be inserted into the resulting FTP session, as demonstrated using a PORT command. | Assigned (20041209) | None (candidate not yet proposed) | View |
Page 19935 of 20943, showing 5 records out of 104715 total, starting on record 99671, ending on 99675