CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8677  CVE-2004-0249  Candidate  PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie"s PXL variable to reference another userID.  Modified (20050815)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8692  CVE-2004-0264  Candidate  palmhttpd for PalmOS allows remote attackers to cause a denial of service (crash) by establishing two simultaneous HTTP connections, which exceeds the PalmOS accept queue.  Proposed (20040318)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8693  CVE-2004-0265  Candidate  Cross-site scripting (XSS) vulnerability in modules.php for Php-Nuke 6.x-7.1.0 allows remote attackers to execute arbitrary script as other users via URL-encoded (1) title or (2) fname parameters in the News or Reviews modules.  Proposed (20040318)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8694  CVE-2004-0266  Candidate  SQL injection vulnerability in the "public message" capability (public_message) for Php-Nuke 6.x to 7.1.0 allows remote attackers obtain the administrator password via the c_mid parameter.  Proposed (20040318)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8695  CVE-2004-0267  Candidate  The (1) inoregupdate, (2) uniftest, or (3) unimove scripts in eTrust InoculateIT for Linux 6.0 allow local users to overwrite arbitrary files via a symlink attack on files in /tmp.  Modified (20050518)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View

Page 20280 of 20943, showing 5 records out of 104715 total, starting on record 101396, ending on 101400

Actions