CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9052  CVE-2004-0624  Candidate  PHP remote file inclusion vulnerability in index.php for Artmedic links 5.0 (artmedic_links5) allows remote attackers to execute arbitrary PHP code by modifying the id parameter to reference a URL on a remote web server that contains the code.  Assigned (20040629)  None (candidate not yet proposed)    View
9053  CVE-2004-0625  Candidate  SQL injection vulnerability in Infinity WEB 1.0 allows remote attackers to bypass authentication and gain privileges via the login page.  Assigned (20040629)  None (candidate not yet proposed)    View
5965  CVE-2002-1581  Candidate  Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view arbitrary files via .. (dot dot) sequences and a null byte (%00) in the configLanguage parameter.  Assigned (20040630)  None (candidate not yet proposed)    View
5966  CVE-2002-1582  Candidate  compose.cgi in Mailreader.com 2.3.30 and 2.3.31, when using Sendmail as the Mail Transfer Agent, allows remote attackers to execute arbitrary commands via shell metacharacters in the RealEmail configuration variable, which is used to call Sendmail in network.cgi.  Assigned (20040630)  None (candidate not yet proposed)    View
9054  CVE-2004-0626  Candidate  The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a large option length that produces a negative integer after a casting operation to the char type.  Assigned (20040630)  None (candidate not yet proposed)    View

Page 899 of 20943, showing 5 records out of 104715 total, starting on record 4491, ending on 4495

Actions