CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9264  CVE-2004-0836  Candidate  Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).  Assigned (20040908)  None (candidate not yet proposed)    View
9265  CVE-2004-0837  Candidate  MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows attackers to cause a denial of service (crash or hang) via multiple threads that simultaneously alter MERGE table UNIONs.  Assigned (20040908)  None (candidate not yet proposed)    View
9267  CVE-2004-0839  Candidate  Internet Explorer in Windows XP SP2, and other versions including 5.01 and 5.5, allows remote attackers to install arbitrary programs via a web page that uses certain styles and the AnchorClick behavior, popup windows, and drag-and-drop capabilities to drop the program in the local startup folder, as demonstrated by "wottapoop.html".  Assigned (20040908)  None (candidate not yet proposed)    View
9268  CVE-2004-0840  Candidate  The SMTP (Simple Mail Transfer Protocol) component of Microsoft Windows XP 64-bit Edition, Windows Server 2003, Windows Server 2003 64-bit Edition, and the Exchange Routing Engine component of Exchange Server 2003, allows remote attackers to execute arbitrary code via a malicious DNS response message containing length values that are not properly validated.  Assigned (20040908)  None (candidate not yet proposed)    View
9269  CVE-2004-0841  Candidate  Internet Explorer 6.x allows remote attackers to install arbitrary programs via mousedown events that call the Popup.show method and use drag-and-drop actions in a popup window, aka "HijackClick 3" and the "Script in Image Tag File Download Vulnerability."  Assigned (20040908)  None (candidate not yet proposed)    View

Page 943 of 20943, showing 5 records out of 104715 total, starting on record 4711, ending on 4715

Actions