CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8488 | CVE-2004-0060 | Candidate | WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Acknowledged in 2.46 release notes | View |
8489 | CVE-2004-0061 | Candidate | WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Ack"ed in 2.46 release notes | View |
8555 | CVE-2004-0127 | Candidate | Directory traversal vulnerability in editconfig_gedcom.php for phpGedView 2.65.1 and earlier allows remote attackers to read arbitrary files or execute arbitrary PHP programs on the server via .. (dot dot) sequences in the gedcom_config parameter. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Vendor ack"ed and provides an update; | http://prdownloads.sourceforge.net/phpgedview/phpGedView-2.65.2.zip?download | View |
8558 | CVE-2004-0130 | Candidate | login.php in phpGedView 2.65 and earlier allows remote attackers to obtain sensitive information via an HTTP request to login.php that does not contain the required username or password parameters, which causes the information to be leaked in an error message. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Vendor acknowledges and supplies fix in version version 2.65.2 | View |
486 | CVE-1999-0488 | Candidate | Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability. | Modified (19991205-01) | ACCEPT(2) Baker, Landfield | MODIFY(2) Frech, Wall | NOOP(2) Christey, Ozancin | Frech> XF:ie-mshtml-crossframe | Wall> (source: MSKB:Q168485) | Christey> CVE-1999-0469 appears to be a duplicate; prefer this one over | that one, since this one has an MS advisory. Confirm with | Microsoft that these are really duplicates. | | Also review CVE-1999-0487, which appears to be a similar | bug. | View |
Page 793 of 20943, showing 5 records out of 104715 total, starting on record 3961, ending on 3965