CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8964  CVE-2004-0536  Candidate  Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report.  Assigned (20040604)  None (candidate not yet proposed)    View
8965  CVE-2004-0537  Candidate  Opera 7.50 and earlier allows remote web sites to provide a "Shortcut Icon" (favicon) that is wider than expected, which could allow the web sites to spoof a trusted domain and facilitate phishing attacks using a wide icon and extra spaces.  Assigned (20040604)  None (candidate not yet proposed)    View
8966  CVE-2004-0538  Candidate  LaunchServices in Mac OS X 10.3.4 and 10.2.8 automatically registers and executes new applications, which could allow attackers to execute arbitrary code without warning the user.  Assigned (20040604)  None (candidate not yet proposed)    View
8967  CVE-2004-0539  Candidate  The "Show in Finder" button in the Safari web browser in Mac OS X 10.3.4 and 10.2.8 may execute downloaded applications, which could allow remote attackers to execute arbitrary code.  Assigned (20040604)  None (candidate not yet proposed)    View
8968  CVE-2004-0540  Candidate  Microsoft Windows 2000, when running in a domain whose Fully Qualified Domain Name (FQDN) is exactly 8 characters long, does not prevent users with expired passwords from logging on to the domain.  Assigned (20040604)  None (candidate not yet proposed)    View

Page 881 of 20943, showing 5 records out of 104715 total, starting on record 4401, ending on 4405

Actions