CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9151  CVE-2004-0723  Candidate  Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets from different domains via the "GET/Key" and "PUT/Key/Value" commands, aka "cross-site Java."  Assigned (20040722)  None (candidate not yet proposed)    View
9152  CVE-2004-0724  Candidate  The Half-Life engine before July 7 2004 allows remote attackers to cause a denial of service (server or client crash) via an empty fragmented packet.  Assigned (20040722)  None (candidate not yet proposed)    View
9153  CVE-2004-0725  Candidate  Cross-site scripting (XSS) vulnerability in help.php in Moodle 1.3.2 and 1.4 dev allows remote attackers to inject arbitrary web script or HTML via the file parameter.  Assigned (20040722)  None (candidate not yet proposed)    View
9154  CVE-2004-0726  Candidate  The Windows Media Player control in Microsoft Windows 2000 allows remote attackers to execute arbitrary script in the local computer zone via an ASX filename that contains javascript, which is executed in the local context in a preview panel.  Assigned (20040722)  None (candidate not yet proposed)    View
9155  CVE-2004-0727  Candidate  Microsoft Internet Explorer 6.0.2800.1106 on Microsoft Windows XP SP2, and other versions including 5.01 and 5.5, allows remote web servers to bypass zone restrictions and execute arbitrary code in the local computer zone by redirecting a function to another function with the same name, as demonstrated by SimilarMethodNameRedir, aka the "Similar Method Name Redirection Cross Domain Vulnerability."  Assigned (20040722)  None (candidate not yet proposed)    View

Page 20023 of 20943, showing 5 records out of 104715 total, starting on record 100111, ending on 100115

Actions