CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9595 | CVE-2004-1167 | Candidate | mirrorselect before 0.89 creates temporary files in a world-writable location with predictable file names, which allows remote attackers to overwrite arbitrary files via a symlink attack. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9596 | CVE-2004-1168 | Candidate | Stack-based buffer overflow in the WebDav handler in MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to execute arbitrary code via a long Overwrite header. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9597 | CVE-2004-1169 | Candidate | MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to cause a denial of service (application crash) via an HTTP GET request for a file that does not exist, followed by two carriage returns, which causes a NULL dereference. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9598 | CVE-2004-1170 | Candidate | a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename. | Assigned (20041209) | None (candidate not yet proposed) | View | |
9583 | CVE-2004-1155 | Candidate | Internet Explorer 5.01 through 6 allows remote attackers to spoof arbitrary web sites by injecting content from one window into another window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability. NOTE: later research shows that Internet Explorer 7 on Windows XP SP2 is also vulnerable. | Assigned (20041208) | None (candidate not yet proposed) | View |
Page 19936 of 20943, showing 5 records out of 104715 total, starting on record 99676, ending on 99680