CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9149  CVE-2004-0721  Candidate  Konqueror 3.1.3, 3.2.2, and possibly other versions does not properly prevent a frame in one domain from injecting content into a frame that belongs to another domain, which facilitates web site spoofing and other attacks, aka the frame injection vulnerability.  Assigned (20040722)  None (candidate not yet proposed)    View
9150  CVE-2004-0722  Candidate  Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote attackers to execute arbitrary code.  Assigned (20040722)  None (candidate not yet proposed)    View
9151  CVE-2004-0723  Candidate  Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets from different domains via the "GET/Key" and "PUT/Key/Value" commands, aka "cross-site Java."  Assigned (20040722)  None (candidate not yet proposed)    View
9152  CVE-2004-0724  Candidate  The Half-Life engine before July 7 2004 allows remote attackers to cause a denial of service (server or client crash) via an empty fragmented packet.  Assigned (20040722)  None (candidate not yet proposed)    View
9153  CVE-2004-0725  Candidate  Cross-site scripting (XSS) vulnerability in help.php in Moodle 1.3.2 and 1.4 dev allows remote attackers to inject arbitrary web script or HTML via the file parameter.  Assigned (20040722)  None (candidate not yet proposed)    View

Page 919 of 20943, showing 5 records out of 104715 total, starting on record 4591, ending on 4595

Actions