CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9042  CVE-2004-0614  Candidate  osTicket trusts a hidden form field in the submit form to limit the upload size of a document, which could allow remote attackers to upload a file of any size.  Assigned (20040629)  None (candidate not yet proposed)    View
9043  CVE-2004-0615  Candidate  Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-624, allows remote attackers to inject arbitrary script or HTML via the DHCP HOSTNAME option in a DHCP request.  Assigned (20040629)  None (candidate not yet proposed)    View
9044  CVE-2004-0616  Candidate  The BT Voyager 2000 Wireless ADSL Router has a default public SNMP community name, which allows remote attackers to obtain sensitive information such as the password, which is stored in plaintext.  Assigned (20040629)  None (candidate not yet proposed)    View
9045  CVE-2004-0617  Candidate  Cross-site scripting (XSS) vulnerability in ArbitroWeb 0.6 allows remote attackers to inject arbitrary script or HTML via the rawURL parameter.  Assigned (20040629)  None (candidate not yet proposed)    View
9046  CVE-2004-0618  Candidate  FreeBSD 5.1 for the Alpha processor allows local users to cause a denial of service (crash) via an execve system call with an unaligned memory address as an argument.  Assigned (20040629)  None (candidate not yet proposed)    View

Page 897 of 20943, showing 5 records out of 104715 total, starting on record 4481, ending on 4485

Actions