CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9558 | CVE-2004-1130 | Candidate | Cross-site scripting (XSS) vulnerability in admin.asp in CMailServer 5.2 allows remote attackers to execute arbitrary web script or HTML via personal information fields, such as (1) username, (2) name, or (3) comments. | Assigned (20041202) | None (candidate not yet proposed) | View | |
9549 | CVE-2004-1121 | Candidate | Apple Safari 1.0 through 1.2.3 allows remote attackers to spoof the URL displayed in the status bar via TABLE tags. | Assigned (20041201) | None (candidate not yet proposed) | View | |
9550 | CVE-2004-1122 | Candidate | Safari 1.x to 1.2.4, and possibly other versions, allows inactive windows to launch dialog boxes, which can allow remote attackers to spoof the dialog boxes from web sites in other windows, aka the "Dialog Box Spoofing Vulnerability," a different vulnerability than CVE-2004-1314. | Assigned (20041201) | None (candidate not yet proposed) | View | |
9551 | CVE-2004-1123 | Candidate | Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte. | Assigned (20041201) | None (candidate not yet proposed) | View | |
9509 | CVE-2004-1081 | Candidate | The Application Framework (AppKit) for Apple Mac OS X 10.2.8 and 10.3.6 does not properly restrict access to a secure text input field, which allows local users to read keyboard input from other applications within the same window session. | Assigned (20041130) | None (candidate not yet proposed) | View |
Page 19944 of 20943, showing 5 records out of 104715 total, starting on record 99716, ending on 99720