CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9099  CVE-2004-0671  Candidate  Brightmail Spamfilter 6.0 and earlier beta releases allows remote attackers to read mail from other users by modifying the id parameter in a viewMsgDetails.do request.  Assigned (20040712)  None (candidate not yet proposed)    View
9100  CVE-2004-0672  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMinder Web Edition 5.6 allows remote attackers to execute script as other users via (1) script that starts with %00 in the numOfExpressions parameter or (2) the mobjtype parameter.  Assigned (20040712)  None (candidate not yet proposed)    View
9101  CVE-2004-0673  Candidate  Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote attackers to execute arbitrary web script as other users via an invalid request that is echoed in the resulting error message.  Assigned (20040712)  None (candidate not yet proposed)    View
9102  CVE-2004-0674  Candidate  Enterasys XSR-1800 series Security Routers, when running firmware 7.0.0.0 and using Policy-Based Routing, allow remote attackers to cause a denial of service (crash) via a packet with the IP record route option set.  Assigned (20040712)  None (candidate not yet proposed)    View
9103  CVE-2004-0675  Candidate  Cross-site scripting (XSS) vulnerability in (1) cart32.exe or (2) c32web.exe in Cart32 shopping cart allows remote attackers to execute arbitrary web script via the cart32 parameter to a GetLatestBuilds command.  Assigned (20040712)  None (candidate not yet proposed)    View

Page 20036 of 20943, showing 5 records out of 104715 total, starting on record 100176, ending on 100180

Actions