CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8786 | CVE-2004-0358 | Candidate | Cross-site scripting (XSS) vulnerability in VirtuaNews Admin Panel Pro 1.0.3 allows remote attackers to execute arbitrary script as other users via (1) the mainnews parameter in admin.php, (2) the expand parameter in admin.php, (3) the id parameter in admin.php, (4) the catid parameter in admin.php, or (5) an unnamed parameter during the newslogo_upload action in admin.php. | Proposed (20040318) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8787 | CVE-2004-0359 | Candidate | Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to execute arbitrary script as other users via the (1) c, (2) f, (3) showtopic, (4) showuser, or (5) username parameters. | Modified (20050719) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
5560 | CVE-2002-1176 | Candidate | Buffer overflow in Winamp 2.81 allows remote attackers to execute arbitrary code via a long Artist ID3v2 tag in an MP3 file. | Proposed (20030317) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
5561 | CVE-2002-1177 | Candidate | Multiple buffer overflows in Winamp 3.0, when displaying an MP3 in the Media Library window, allows remote attackers to execute arbitrary code via an MP3 file containing a long (1) Artist or (2) Album ID3v2 tag. | Modified (20080304) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8664 | CVE-2004-0236 | Candidate | SQL injection vulnerability in login.asp in thePHOTOtool allows remote attackers to gain unauthorized access via the password field. | Modified (20090127) | NOOP(4) Armstrong, Cole, Cox, Wall | View |
Page 20928 of 20943, showing 5 records out of 104715 total, starting on record 104636, ending on 104640