CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8674  CVE-2004-0246  Candidate  Multiple PHP remote file inclusion vulnerabilities in (1) fonctions.lib.php, (2) derniers_commentaires.php, and (3) admin.php in Les Commentaires 2.0 allow remote attackers to execute arbitrary PHP code via the rep parameter.  Modified (20050815)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8676  CVE-2004-0248  Candidate  Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into (1) keywords argument of main.inc.php, (2) body argument of help.inc.php, or (3) the subject field in Personal Messages and Forum.  Modified (20050815)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8677  CVE-2004-0249  Candidate  PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie"s PXL variable to reference another userID.  Modified (20050815)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
8680  CVE-2004-0252  Candidate  TYPSoft FTP Server 1.10 allows remote attackers to cause a denial of service (CPU consumption) via an empty USER name.  Modified (20050815)  ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall    View
4910  CVE-2002-0518  Candidate  The SYN cache (syncache) and SYN cookie (syncookie) mechanism in FreeBSD 4.5 and earlier allows remote attackers to cause a denial of service (crash) (1) via a SYN packet that is accepted using syncookies that causes a null pointer to be referenced for the socket"s TCP options, or (2) by killing and restarting a process that listens on the same socket, which does not properly clear the old inpcb pointer on restart.  Modified (20050817)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View

Page 20450 of 20943, showing 5 records out of 104715 total, starting on record 102246, ending on 102250

Actions