CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8669  CVE-2004-0241  Candidate  X-Cart 3.4.3 allows remote attackers to execute arbitrary commands via the perl_binary argument in (1) upgrade.php or (2) general.php.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8670  CVE-2004-0242  Candidate  X-Cart 3.4.3 allows remote attackers to gain sensitive information via a mode parameter with (1) phpinfo command or (2) perlinfo command.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8675  CVE-2004-0247  Candidate  The client and server of Chaser 1.50 and earlier allow remote attackers to cause a denial of service (crash via exception) via a UDP packet with a length field that is greater than the actual data length, which causes Chaser to read unexpected memory.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8678  CVE-2004-0250  Candidate  SQL injection vulnerability in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain privileges via (1) the product parameter in showproduct.php or (2) the cat parameter in showcat.php.  Proposed (20040318)  ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall    View
8679  CVE-2004-0251  Candidate  Cross-site scripting (XSS) vulnerability in rxgoogle.cgi allows remote attackers to execute arbitrary script as other users via the query parameter.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View

Page 20940 of 20943, showing 5 records out of 104715 total, starting on record 104696, ending on 104700

Actions