CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9558  CVE-2004-1130  Candidate  Cross-site scripting (XSS) vulnerability in admin.asp in CMailServer 5.2 allows remote attackers to execute arbitrary web script or HTML via personal information fields, such as (1) username, (2) name, or (3) comments.  Assigned (20041202)  None (candidate not yet proposed)    View
9549  CVE-2004-1121  Candidate  Apple Safari 1.0 through 1.2.3 allows remote attackers to spoof the URL displayed in the status bar via TABLE tags.  Assigned (20041201)  None (candidate not yet proposed)    View
9550  CVE-2004-1122  Candidate  Safari 1.x to 1.2.4, and possibly other versions, allows inactive windows to launch dialog boxes, which can allow remote attackers to spoof the dialog boxes from web sites in other windows, aka the "Dialog Box Spoofing Vulnerability," a different vulnerability than CVE-2004-1314.  Assigned (20041201)  None (candidate not yet proposed)    View
9551  CVE-2004-1123  Candidate  Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte.  Assigned (20041201)  None (candidate not yet proposed)    View
9509  CVE-2004-1081  Candidate  The Application Framework (AppKit) for Apple Mac OS X 10.2.8 and 10.3.6 does not properly restrict access to a secure text input field, which allows local users to read keyboard input from other applications within the same window session.  Assigned (20041130)  None (candidate not yet proposed)    View

Page 19944 of 20943, showing 5 records out of 104715 total, starting on record 99716, ending on 99720

Actions