CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9220  CVE-2004-0792  Candidate  Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files.  Assigned (20040817)  None (candidate not yet proposed)    View
9221  CVE-2004-0793  Candidate  The calendar program in bsdmainutils 6.0 through 6.0.14 does not drop root privileges when executed with the -a flag, which allows attackers to execute arbitrary commands via a calendar event file.  Assigned (20040817)  None (candidate not yet proposed)    View
9222  CVE-2004-0794  Candidate  Multiple signal handler race conditions in lukemftpd (aka tnftpd before 20040810) allow remote authenticated attackers to cause a denial of service or execute arbitrary code.  Assigned (20040817)  None (candidate not yet proposed)    View
9208  CVE-2004-0780  Candidate  Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument.  Assigned (20040817)  None (candidate not yet proposed)    View
9209  CVE-2004-0781  Candidate  Cross-site scripting (XSS) vulnerability in list.cgi in the Icecast internal web server (icecast-server) 1.3.12 and earlier allows remote attackers to inject arbitrary web script via the UserAgent parameter.  Assigned (20040817)  None (candidate not yet proposed)    View

Page 20012 of 20943, showing 5 records out of 104715 total, starting on record 100056, ending on 100060

Actions