CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9220 | CVE-2004-0792 | Candidate | Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files. | Assigned (20040817) | None (candidate not yet proposed) | View | |
9221 | CVE-2004-0793 | Candidate | The calendar program in bsdmainutils 6.0 through 6.0.14 does not drop root privileges when executed with the -a flag, which allows attackers to execute arbitrary commands via a calendar event file. | Assigned (20040817) | None (candidate not yet proposed) | View | |
9222 | CVE-2004-0794 | Candidate | Multiple signal handler race conditions in lukemftpd (aka tnftpd before 20040810) allow remote authenticated attackers to cause a denial of service or execute arbitrary code. | Assigned (20040817) | None (candidate not yet proposed) | View | |
9208 | CVE-2004-0780 | Candidate | Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument. | Assigned (20040817) | None (candidate not yet proposed) | View | |
9209 | CVE-2004-0781 | Candidate | Cross-site scripting (XSS) vulnerability in list.cgi in the Icecast internal web server (icecast-server) 1.3.12 and earlier allows remote attackers to inject arbitrary web script via the UserAgent parameter. | Assigned (20040817) | None (candidate not yet proposed) | View |
Page 20012 of 20943, showing 5 records out of 104715 total, starting on record 100056, ending on 100060