CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9012  CVE-2004-0584  Candidate  Unknown vulnerability in Horde IMP 3.2.3 and earlier, before a "security fix," does not properly validate input, which allows remote attackers to execute arbitrary script as other users via script or HTML in an e-mail message, possibly triggering a cross-site scripting (XSS) vulnerability.  Assigned (20040618)  None (candidate not yet proposed)    View
9013  CVE-2004-0585  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0589. Reason: This candidate is a duplicate of CVE-2004-0589. Notes: All CVE users should reference CVE-2004-0589 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20040618)  None (candidate not yet proposed)    View
9014  CVE-2004-0586  Candidate  acpRunner ActiveX 1.2.5.0 allows remote attackers to execute arbitrary code via the (1) DownLoadURL, (2) SaveFilePath, and (3) Download ActiveX methods.  Assigned (20040618)  None (candidate not yet proposed)    View
9015  CVE-2004-0587  Candidate  Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local users to cause a denial of service.  Assigned (20040621)  None (candidate not yet proposed)    View
9016  CVE-2004-0588  Candidate  Cross-site scripting (XSS) vulnerability in the web mail module for Usermin 1.070 allows remote attackers to insert arbitrary HTML and script via e-mail messages.  Assigned (20040621)  None (candidate not yet proposed)    View

Page 891 of 20943, showing 5 records out of 104715 total, starting on record 4451, ending on 4455

Actions