CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8629  CVE-2004-0201  Candidate  Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041.  Assigned (20040311)  None (candidate not yet proposed)    View
8630  CVE-2004-0202  Candidate  IDirectPlay4 Application Programming Interface (API) of Microsoft DirectPlay 7.0a thru 9.0b, as used in Windows Server 2003 and earlier allows remote attackers to cause a denial of service (application crash) via a malformed packet.  Assigned (20040311)  None (candidate not yet proposed)    View
8631  CVE-2004-0203  Candidate  Cross-site scripting (XSS) vulnerability in Outlook Web Access for Exchange Server 5.5 Service Pack 4 allows remote attackers to insert arbitrary script and spoof content in HTML email or web caches via an HTML redirect query.  Assigned (20040311)  None (candidate not yet proposed)    View
8632  CVE-2004-0204  Candidate  Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2003 with Business Contact Manager, Microsoft Business Solutions CRM 1.2, and other products, allows remote attackers to read and delete arbitrary files via ".." sequences in the dynamicimag argument to crystalimagehandler.aspx.  Assigned (20040311)  None (candidate not yet proposed)    View
8633  CVE-2004-0205  Candidate  Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.  Assigned (20040311)  None (candidate not yet proposed)    View

Page 836 of 20943, showing 5 records out of 104715 total, starting on record 4176, ending on 4180

Actions