CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8507 | CVE-2004-0079 | Candidate | The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference. | Assigned (20040119) | None (candidate not yet proposed) | View | |
8509 | CVE-2004-0081 | Candidate | OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool. | Assigned (20040119) | None (candidate not yet proposed) | View | |
8518 | CVE-2004-0090 | Candidate | Unknown vulnerability in Windows File Sharing for Mac OS X 10.1.5 through 10.3.2 does not "shutdown properly," which has unknown impact and attack vectors. | Assigned (20040120) | None (candidate not yet proposed) | View | |
7855 | CVE-2003-1031 | Candidate | Cross-site scripting (XSS) vulnerability in register.php for vBulletin 3.0 Beta 2 allows remote attackers to inject arbitrary HTML or web script via optional fields such as (1) "Interests-Hobbies", (2) "Biography", or (3) "Occupation." | Assigned (20040121) | None (candidate not yet proposed) | View | |
7856 | CVE-2003-1032 | Candidate | Pi3Web web server 2.0.2 Beta 1, when the Directory Index is configured to use the "Name" column and sort using the column title as a hyperlink, allows remote attackers to cause a denial of service (crash) via a malformed URL to the web server, possibly involving a buffer overflow. | Assigned (20040122) | None (candidate not yet proposed) | View |
Page 823 of 20943, showing 5 records out of 104715 total, starting on record 4111, ending on 4115