CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9538  CVE-2004-1110  Candidate  The mtink status monitor before 1.0.5 for Epson printers allows local users to overwrite arbitrary files via a symlink attack on the epson temporary file.  Assigned (20041130)  None (candidate not yet proposed)    View
9539  CVE-2004-1111  Candidate  Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command, keep undeliverable DHCP packets in the queue instead of dropping them, which allows remote attackers to cause a denial of service (dropped traffic) via multiple undeliverable DHCP packets that exceed the input queue size.  Assigned (20041130)  None (candidate not yet proposed)    View
9540  CVE-2004-1112  Candidate  The buffer overflow trigger in Cisco Security Agent (CSA) before 4.0.3 build 728 waits five minutes for a user response before terminating the process, which could allow remote attackers to bypass the buffer overflow protection by sending additional buffer overflow attacks within the five minute timeout period.  Assigned (20041130)  None (candidate not yet proposed)    View
9541  CVE-2004-1113  Candidate  SQL injection vulnerability in SQLgrey Postfix greylisting service before 1.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) sender or (2) recipient e-mail addresses.  Assigned (20041130)  None (candidate not yet proposed)    View
9542  CVE-2004-1114  Candidate  Buffer overflow in the handling of command line arguments in Skype 1.0.x.94 through 1.0.x.98 allows remote attackers to execute arbitrary code via a callto:// URL with a long non-existent username, a different vulnerability than CVE-2004-1777.  Assigned (20041130)  None (candidate not yet proposed)    View

Page 998 of 20943, showing 5 records out of 104715 total, starting on record 4986, ending on 4990

Actions