CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9017  CVE-2004-0589  Candidate  Cisco IOS 11.1(x) through 11.3(x) and 12.0(x) through 12.2(x), when configured for BGP routing, allows remote attackers to cause a denial of service (device reload) via malformed BGP (1) OPEN or (2) UPDATE messages.  Assigned (20040622)  None (candidate not yet proposed)    View
9018  CVE-2004-0590  Candidate  FreeS/WAN 1.x and 2.x, and other related products including superfreeswan 1.x, openswan 1.x before 1.0.6, openswan 2.x before 2.1.4, and strongSwan before 2.1.3, allows remote attackers to authenticate using spoofed PKCS#7 certificates in which a self-signed certificate identifies an alternate Certificate Authority (CA) and spoofed issuer and subject.  Assigned (20040623)  None (candidate not yet proposed)    View
9019  CVE-2004-0591  Candidate  Cross-site scripting (XSS) vulnerability in the print_header_uc function for SqWebMail 4.0.4 and earlier, and possibly 3.x, allows remote attackers to inject arbitrary web script or HRML via (1) e-mail headers or (2) a message with a "message/delivery-status" MIME Content-Type.  Assigned (20040623)  None (candidate not yet proposed)    View
9020  CVE-2004-0592  Candidate  The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, when using iptables and TCP options rules, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a large option length that produces a negative integer after a casting operation to the char type, a similar flaw to CVE-2004-0626.  Assigned (20040623)  None (candidate not yet proposed)    View
9021  CVE-2004-0593  Candidate  Sygate Enforcer 3.5MR1 and earlier passes broadcast traffic before authentication, which could allow remote attackers to bypass filtering rules.  Assigned (20040623)  None (candidate not yet proposed)    View

Page 892 of 20943, showing 5 records out of 104715 total, starting on record 4456, ending on 4460

Actions