CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7111 | CVE-2003-0283 | Candidate | Cross-site scripting (XSS) vulnerability in Phorum before 3.4.3 allows remote attackers to inject arbitrary web script and HTML tags via a message with a "<<" before a tag name in the (1) subject, (2) author"s name, or (3) author"s e-mail. | Assigned (20030512) | None (candidate not yet proposed) | View | |
7103 | CVE-2003-0275 | Candidate | SSI.php in YaBB SE 1.5.2 allows remote attackers to execute arbitrary PHP code by modifying the sourcedir parameter to reference a URL on a remote web server that contains the code. | Assigned (20030509) | None (candidate not yet proposed) | View | |
7098 | CVE-2003-0270 | Candidate | The administration capability for Apple AirPort 802.11 wireless access point devices uses weak encryption (XOR with a fixed key) for protecting authentication credentials, which could allow remote attackers to obtain administrative access via sniffing when the capability is available via Ethernet or non-WEP connections. | Assigned (20030508) | None (candidate not yet proposed) | View | |
7099 | CVE-2003-0271 | Candidate | Buffer overflow in Personal FTP Server allows remote attackers to execute arbitrary code via a long USER argument. | Assigned (20030508) | None (candidate not yet proposed) | View | |
7100 | CVE-2003-0272 | Candidate | admin.php in miniPortail allows remote attackers to gain administrative privileges by setting the miniPortailAdmin cookie to an "adminok" value. | Assigned (20030508) | None (candidate not yet proposed) | View |
Page 20275 of 20943, showing 5 records out of 104715 total, starting on record 101371, ending on 101375