CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9262  CVE-2004-0834  Candidate  Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) modem_run, (2) pppoa2, or (3) pppoa3.  Assigned (20040908)  None (candidate not yet proposed)    View
9263  CVE-2004-0835  Candidate  MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.  Assigned (20040908)  None (candidate not yet proposed)    View
9264  CVE-2004-0836  Candidate  Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).  Assigned (20040908)  None (candidate not yet proposed)    View
9265  CVE-2004-0837  Candidate  MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows attackers to cause a denial of service (crash or hang) via multiple threads that simultaneously alter MERGE table UNIONs.  Assigned (20040908)  None (candidate not yet proposed)    View
9267  CVE-2004-0839  Candidate  Internet Explorer in Windows XP SP2, and other versions including 5.01 and 5.5, allows remote attackers to install arbitrary programs via a web page that uses certain styles and the AnchorClick behavior, popup windows, and drag-and-drop capabilities to drop the program in the local startup folder, as demonstrated by "wottapoop.html".  Assigned (20040908)  None (candidate not yet proposed)    View

Page 20000 of 20943, showing 5 records out of 104715 total, starting on record 99996, ending on 100000

Actions