CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9067 | CVE-2004-0639 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Squirrelmail 1.2.10 and earlier allow remote attackers to inject arbitrary HTML or script via (1) the $mailer variable in read_body.php, (2) the $senderNames_part variable in mailbox_display.php, and possibly other vectors including (3) the $event_title variable or (4) the $event_text variable. | Assigned (20040708) | None (candidate not yet proposed) | View | |
9068 | CVE-2004-0640 | Candidate | Format string vulnerability in the SSL_set_verify function in telnetd.c for SSLtelnet daemon (SSLtelnetd) 0.13 allows remote attackers to execute arbitrary code. | Assigned (20040708) | None (candidate not yet proposed) | View | |
9069 | CVE-2004-0641 | Candidate | Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections. | Assigned (20040708) | None (candidate not yet proposed) | View | |
9070 | CVE-2004-0642 | Candidate | Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code. | Assigned (20040708) | None (candidate not yet proposed) | View | |
9071 | CVE-2004-0643 | Candidate | Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code. | Assigned (20040708) | None (candidate not yet proposed) | View |
Page 20041 of 20943, showing 5 records out of 104715 total, starting on record 100201, ending on 100205