CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9533  CVE-2004-1105  Candidate  Nortel Networks Contivity VPN Client displays a different error message depending on whether the username is valid or invalid, which could allow remote attackers to gain sensitive information.  Assigned (20041130)  None (candidate not yet proposed)    View
9534  CVE-2004-1106  Candidate  Cross-site scripting (XSS) vulnerability in Gallery 1.4.4-pl3 and earlier allows remote attackers to execute arbitrary web script or HTML via "specially formed URLs," possibly via the include parameter in index.php.  Assigned (20041130)  None (candidate not yet proposed)    View
9535  CVE-2004-1107  Candidate  dispatch-conf in Portage 2.0.51-r2 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.  Assigned (20041130)  None (candidate not yet proposed)    View
9536  CVE-2004-1108  Candidate  qpkg in Gentoolkit 0.2.0_pre10 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary directory.  Assigned (20041130)  None (candidate not yet proposed)    View
9537  CVE-2004-1109  Candidate  The FWDRV.SYS driver in Kerio Personal Firewall 4.1.1 and earlier allows remote attackers to cause a denial of service (CPU consumption and system freeze from infinite loop) via a (1) TCP, (2) UDP, or (3) ICMP packet with a zero length IP Option field.  Assigned (20041130)  None (candidate not yet proposed)    View

Page 997 of 20943, showing 5 records out of 104715 total, starting on record 4981, ending on 4985

Actions