CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9595  CVE-2004-1167  Candidate  mirrorselect before 0.89 creates temporary files in a world-writable location with predictable file names, which allows remote attackers to overwrite arbitrary files via a symlink attack.  Assigned (20041209)  None (candidate not yet proposed)    View
9596  CVE-2004-1168  Candidate  Stack-based buffer overflow in the WebDav handler in MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to execute arbitrary code via a long Overwrite header.  Assigned (20041209)  None (candidate not yet proposed)    View
9597  CVE-2004-1169  Candidate  MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to cause a denial of service (application crash) via an HTTP GET request for a file that does not exist, followed by two carriage returns, which causes a NULL dereference.  Assigned (20041209)  None (candidate not yet proposed)    View
9598  CVE-2004-1170  Candidate  a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.  Assigned (20041209)  None (candidate not yet proposed)    View
9583  CVE-2004-1155  Candidate  Internet Explorer 5.01 through 6 allows remote attackers to spoof arbitrary web sites by injecting content from one window into another window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability. NOTE: later research shows that Internet Explorer 7 on Windows XP SP2 is also vulnerable.  Assigned (20041208)  None (candidate not yet proposed)    View

Page 19936 of 20943, showing 5 records out of 104715 total, starting on record 99676, ending on 99680

Actions