CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9099 | CVE-2004-0671 | Candidate | Brightmail Spamfilter 6.0 and earlier beta releases allows remote attackers to read mail from other users by modifying the id parameter in a viewMsgDetails.do request. | Assigned (20040712) | None (candidate not yet proposed) | View | |
9100 | CVE-2004-0672 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMinder Web Edition 5.6 allows remote attackers to execute script as other users via (1) script that starts with %00 in the numOfExpressions parameter or (2) the mobjtype parameter. | Assigned (20040712) | None (candidate not yet proposed) | View | |
9101 | CVE-2004-0673 | Candidate | Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote attackers to execute arbitrary web script as other users via an invalid request that is echoed in the resulting error message. | Assigned (20040712) | None (candidate not yet proposed) | View | |
9102 | CVE-2004-0674 | Candidate | Enterasys XSR-1800 series Security Routers, when running firmware 7.0.0.0 and using Policy-Based Routing, allow remote attackers to cause a denial of service (crash) via a packet with the IP record route option set. | Assigned (20040712) | None (candidate not yet proposed) | View | |
9103 | CVE-2004-0675 | Candidate | Cross-site scripting (XSS) vulnerability in (1) cart32.exe or (2) c32web.exe in Cart32 shopping cart allows remote attackers to execute arbitrary web script via the cart32 parameter to a GetLatestBuilds command. | Assigned (20040712) | None (candidate not yet proposed) | View |
Page 20036 of 20943, showing 5 records out of 104715 total, starting on record 100176, ending on 100180