CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9164  CVE-2004-0736  Candidate  The search module in Php-Nuke allows remote attackers to gain sensitive information via the (1) "**" or (2) "+" search patterns, which reveals the path in an error message.  Assigned (20040722)  None (candidate not yet proposed)    View
9165  CVE-2004-0737  Candidate  Multiple cross-site scripting vulnerabilities in index.php in the Search module for Php-Nuke allows remote attackers to inject arbitrary web script or HTML via the (1) sid, (2) max, (3) sel1, (4) sel2, (5) sel3, (6) sel4, (7) sel5, (8) match, (9) mod1, (10) mod2, or (11) mod3 parameters.  Assigned (20040722)  None (candidate not yet proposed)    View
9166  CVE-2004-0738  Candidate  Multiple SQL injection vulnerabilities in the Search module in Php-Nuke allow remote attackers to execute arbitrary SQL via the (1) min or (2) categ parameters.  Assigned (20040722)  None (candidate not yet proposed)    View
9167  CVE-2004-0739  Candidate  Buffer overflow in Whisper FTP Surfer 1.0.7 allows remote FTP servers to cause a denial of service (client crash) and possibly execute arbitrary code via a long filename.  Assigned (20040722)  None (candidate not yet proposed)    View
9168  CVE-2004-0740  Candidate  The HTTP server in Lexmark T522 and possibly other models allows remote attackers to cause a denial of service (server crash, reload, or hang) via an HTTP header with a long Host field, possibly triggering a buffer overflow.  Assigned (20040722)  None (candidate not yet proposed)    View

Page 922 of 20943, showing 5 records out of 104715 total, starting on record 4606, ending on 4610

Actions