CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9042 | CVE-2004-0614 | Candidate | osTicket trusts a hidden form field in the submit form to limit the upload size of a document, which could allow remote attackers to upload a file of any size. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9043 | CVE-2004-0615 | Candidate | Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-624, allows remote attackers to inject arbitrary script or HTML via the DHCP HOSTNAME option in a DHCP request. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9044 | CVE-2004-0616 | Candidate | The BT Voyager 2000 Wireless ADSL Router has a default public SNMP community name, which allows remote attackers to obtain sensitive information such as the password, which is stored in plaintext. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9045 | CVE-2004-0617 | Candidate | Cross-site scripting (XSS) vulnerability in ArbitroWeb 0.6 allows remote attackers to inject arbitrary script or HTML via the rawURL parameter. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9046 | CVE-2004-0618 | Candidate | FreeBSD 5.1 for the Alpha processor allows local users to cause a denial of service (crash) via an execve system call with an unaligned memory address as an argument. | Assigned (20040629) | None (candidate not yet proposed) | View |
Page 897 of 20943, showing 5 records out of 104715 total, starting on record 4481, ending on 4485