CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7451  CVE-2003-0624  Candidate  Cross-site scripting (XSS) vulnerability in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier allows remote attackers to inject malicious web script via the person parameter.  Assigned (20030731)  None (candidate not yet proposed)    View
7452  CVE-2003-0625  Candidate  Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malformed client request in the connection handshake, which leaks the memory in the server"s response.  Assigned (20030731)  None (candidate not yet proposed)    View
7453  CVE-2003-0626  Candidate  psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to read arbitrary files via the (1) headername or (2) footername arguments.  Assigned (20030731)  None (candidate not yet proposed)    View
7454  CVE-2003-0627  Candidate  psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to cause a denial of service (application crash), possibly via the headername and footername arguments.  Assigned (20030731)  None (candidate not yet proposed)    View
7455  CVE-2003-0628  Candidate  PeopleSoft Gateway Administration servlet (gateway.administration) in PeopleTools 8.43 and earlier allows remote attackers to obtain the full pathnames for server-side include (SSI) files via an HTTP request with an invalid value.  Assigned (20030731)  None (candidate not yet proposed)    View

Page 739 of 20943, showing 5 records out of 104715 total, starting on record 3691, ending on 3695

Actions