CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8957 | CVE-2004-0529 | Candidate | The modified suexec program in cPanel, when configured for mod_php and compiled for Apache 1.3.31 and earlier without mod_phpsuexec, allows local users to execute untrusted shared scripts and gain privileges, as demonstrated using untainted scripts such as (1) proftpdvhosts or (2) addalink.cgi, a different vulnerability than CVE-2004-0490. | Assigned (20040603) | None (candidate not yet proposed) | View | |
8960 | CVE-2004-0532 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20040604) | None (candidate not yet proposed) | View | |
8961 | CVE-2004-0533 | Candidate | Business Objects WebIntelligence 2.7.0 through 2.7.4 only enforces access controls on the client, which allows remote authenticated users to delete arbitrary files on the server via a crafted delete request using the InfoView web client. | Assigned (20040604) | None (candidate not yet proposed) | View | |
8962 | CVE-2004-0534 | Candidate | Cross-site scripting (XSS) vulnerability in Business Objects InfoView 5.1.4 through 5.1.8 for WebIntelligence 2.7.0 through 2.7.4 allows remote attackers to inject arbitrary web script or HTML via document names when uploading a document. | Assigned (20040604) | None (candidate not yet proposed) | View | |
8963 | CVE-2004-0535 | Candidate | The e1000 driver for Linux kernel 2.4.26 and earlier does not properly initialize memory before using it, which allows local users to read portions of kernel memory. NOTE: this issue was originally incorrectly reported as a "buffer overflow" by some sources. | Assigned (20040604) | None (candidate not yet proposed) | View |
Page 880 of 20943, showing 5 records out of 104715 total, starting on record 4396, ending on 4400