CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8669 | CVE-2004-0241 | Candidate | X-Cart 3.4.3 allows remote attackers to execute arbitrary commands via the perl_binary argument in (1) upgrade.php or (2) general.php. | Proposed (20040318) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8670 | CVE-2004-0242 | Candidate | X-Cart 3.4.3 allows remote attackers to gain sensitive information via a mode parameter with (1) phpinfo command or (2) perlinfo command. | Proposed (20040318) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8675 | CVE-2004-0247 | Candidate | The client and server of Chaser 1.50 and earlier allow remote attackers to cause a denial of service (crash via exception) via a UDP packet with a length field that is greater than the actual data length, which causes Chaser to read unexpected memory. | Proposed (20040318) | NOOP(4) Armstrong, Cole, Cox, Wall | View | |
8678 | CVE-2004-0250 | Candidate | SQL injection vulnerability in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain privileges via (1) the product parameter in showproduct.php or (2) the cat parameter in showcat.php. | Proposed (20040318) | ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall | View | |
8679 | CVE-2004-0251 | Candidate | Cross-site scripting (XSS) vulnerability in rxgoogle.cgi allows remote attackers to execute arbitrary script as other users via the query parameter. | Proposed (20040318) | NOOP(4) Armstrong, Cole, Cox, Wall | View |
Page 20940 of 20943, showing 5 records out of 104715 total, starting on record 104696, ending on 104700