CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8964 | CVE-2004-0536 | Candidate | Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report. | Assigned (20040604) | None (candidate not yet proposed) | View | |
8965 | CVE-2004-0537 | Candidate | Opera 7.50 and earlier allows remote web sites to provide a "Shortcut Icon" (favicon) that is wider than expected, which could allow the web sites to spoof a trusted domain and facilitate phishing attacks using a wide icon and extra spaces. | Assigned (20040604) | None (candidate not yet proposed) | View | |
8966 | CVE-2004-0538 | Candidate | LaunchServices in Mac OS X 10.3.4 and 10.2.8 automatically registers and executes new applications, which could allow attackers to execute arbitrary code without warning the user. | Assigned (20040604) | None (candidate not yet proposed) | View | |
8967 | CVE-2004-0539 | Candidate | The "Show in Finder" button in the Safari web browser in Mac OS X 10.3.4 and 10.2.8 may execute downloaded applications, which could allow remote attackers to execute arbitrary code. | Assigned (20040604) | None (candidate not yet proposed) | View | |
8968 | CVE-2004-0540 | Candidate | Microsoft Windows 2000, when running in a domain whose Fully Qualified Domain Name (FQDN) is exactly 8 characters long, does not prevent users with expired passwords from logging on to the domain. | Assigned (20040604) | None (candidate not yet proposed) | View |
Page 881 of 20943, showing 5 records out of 104715 total, starting on record 4401, ending on 4405