CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7111  CVE-2003-0283  Candidate  Cross-site scripting (XSS) vulnerability in Phorum before 3.4.3 allows remote attackers to inject arbitrary web script and HTML tags via a message with a "<<" before a tag name in the (1) subject, (2) author"s name, or (3) author"s e-mail.  Assigned (20030512)  None (candidate not yet proposed)    View
7103  CVE-2003-0275  Candidate  SSI.php in YaBB SE 1.5.2 allows remote attackers to execute arbitrary PHP code by modifying the sourcedir parameter to reference a URL on a remote web server that contains the code.  Assigned (20030509)  None (candidate not yet proposed)    View
7098  CVE-2003-0270  Candidate  The administration capability for Apple AirPort 802.11 wireless access point devices uses weak encryption (XOR with a fixed key) for protecting authentication credentials, which could allow remote attackers to obtain administrative access via sniffing when the capability is available via Ethernet or non-WEP connections.  Assigned (20030508)  None (candidate not yet proposed)    View
7099  CVE-2003-0271  Candidate  Buffer overflow in Personal FTP Server allows remote attackers to execute arbitrary code via a long USER argument.  Assigned (20030508)  None (candidate not yet proposed)    View
7100  CVE-2003-0272  Candidate  admin.php in miniPortail allows remote attackers to gain administrative privileges by setting the miniPortailAdmin cookie to an "adminok" value.  Assigned (20030508)  None (candidate not yet proposed)    View

Page 20275 of 20943, showing 5 records out of 104715 total, starting on record 101371, ending on 101375

Actions