CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8786  CVE-2004-0358  Candidate  Cross-site scripting (XSS) vulnerability in VirtuaNews Admin Panel Pro 1.0.3 allows remote attackers to execute arbitrary script as other users via (1) the mainnews parameter in admin.php, (2) the expand parameter in admin.php, (3) the id parameter in admin.php, (4) the catid parameter in admin.php, or (5) an unnamed parameter during the newslogo_upload action in admin.php.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8787  CVE-2004-0359  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to execute arbitrary script as other users via the (1) c, (2) f, (3) showtopic, (4) showuser, or (5) username parameters.  Modified (20050719)  NOOP(4) Armstrong, Cole, Cox, Wall    View
5560  CVE-2002-1176  Candidate  Buffer overflow in Winamp 2.81 allows remote attackers to execute arbitrary code via a long Artist ID3v2 tag in an MP3 file.  Proposed (20030317)  NOOP(4) Armstrong, Cole, Cox, Wall    View
5561  CVE-2002-1177  Candidate  Multiple buffer overflows in Winamp 3.0, when displaying an MP3 in the Media Library window, allows remote attackers to execute arbitrary code via an MP3 file containing a long (1) Artist or (2) Album ID3v2 tag.  Modified (20080304)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8664  CVE-2004-0236  Candidate  SQL injection vulnerability in login.asp in thePHOTOtool allows remote attackers to gain unauthorized access via the password field.  Modified (20090127)  NOOP(4) Armstrong, Cole, Cox, Wall    View

Page 20928 of 20943, showing 5 records out of 104715 total, starting on record 104636, ending on 104640

Actions