CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9149 | CVE-2004-0721 | Candidate | Konqueror 3.1.3, 3.2.2, and possibly other versions does not properly prevent a frame in one domain from injecting content into a frame that belongs to another domain, which facilitates web site spoofing and other attacks, aka the frame injection vulnerability. | Assigned (20040722) | None (candidate not yet proposed) | View | |
9150 | CVE-2004-0722 | Candidate | Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote attackers to execute arbitrary code. | Assigned (20040722) | None (candidate not yet proposed) | View | |
9151 | CVE-2004-0723 | Candidate | Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets from different domains via the "GET/Key" and "PUT/Key/Value" commands, aka "cross-site Java." | Assigned (20040722) | None (candidate not yet proposed) | View | |
9152 | CVE-2004-0724 | Candidate | The Half-Life engine before July 7 2004 allows remote attackers to cause a denial of service (server or client crash) via an empty fragmented packet. | Assigned (20040722) | None (candidate not yet proposed) | View | |
9153 | CVE-2004-0725 | Candidate | Cross-site scripting (XSS) vulnerability in help.php in Moodle 1.3.2 and 1.4 dev allows remote attackers to inject arbitrary web script or HTML via the file parameter. | Assigned (20040722) | None (candidate not yet proposed) | View |
Page 919 of 20943, showing 5 records out of 104715 total, starting on record 4591, ending on 4595