CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8948  CVE-2004-0520  Candidate  Cross-site scripting (XSS) vulnerability in mime.php for SquirrelMail before 1.4.3 allows remote attackers to insert arbitrary HTML and script via the content-type mail header, as demonstrated using read_body.php.  Assigned (20040602)  None (candidate not yet proposed)    View
8949  CVE-2004-0521  Candidate  SQL injection vulnerability in SquirrelMail before 1.4.3 RC1 allows remote attackers to execute unauthorized SQL statements, with unknown impact, probably via abook_database.php.  Assigned (20040602)  None (candidate not yet proposed)    View
7871  CVE-2003-1047  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0540. Reason: This candidate is a duplicate of CVE-2004-0540. Notes: All CVE users should reference CVE-2004-0540 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20040603)  None (candidate not yet proposed)    View
8950  CVE-2004-0522  Candidate  Gallery 1.4.3 and earlier allows remote attackers to bypass authentication and obtain Gallery administrator privileges.  Assigned (20040603)  None (candidate not yet proposed)    View
8951  CVE-2004-0523  Candidate  Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.  Assigned (20040603)  None (candidate not yet proposed)    View

Page 878 of 20943, showing 5 records out of 104715 total, starting on record 4386, ending on 4390

Actions