CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9465  CVE-2004-1037  Candidate  The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in a search string.  Assigned (20041116)  None (candidate not yet proposed)    View
9466  CVE-2004-1038  Candidate  A design error in the IEEE1394 specification allows attackers with physical access to a device to read and write to sensitive memory using a modified FireWire/IEEE 1394 client, thus bypassing intended restrictions that would normally require greater degrees of physical access to exploit. NOTE: this was reported in 2008 to affect Windows Vista, but some Linux-based operating systems have protection mechanisms against this attack.  Assigned (20041116)  None (candidate not yet proposed)    View
9467  CVE-2004-1039  Candidate  The NFS mountd service on SCO UnixWare 7.1.1, 7.1.3, 7.1.4, and 7.0.1, and possibly other versions, when run from inetd, allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests, which causes inetd to launch a separate process for each request.  Assigned (20041116)  None (candidate not yet proposed)    View
9464  CVE-2004-1036  Candidate  Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail 1.4.3a and earlier, and 1.5.1-cvs before 23rd October 2004, allows remote attackers to execute arbitrary web script or HTML.  Assigned (20041115)  None (candidate not yet proposed)    View
9453  CVE-2004-1025  Candidate  Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.  Assigned (20041112)  None (candidate not yet proposed)    View

Page 19961 of 20943, showing 5 records out of 104715 total, starting on record 99801, ending on 99805

Actions