CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9538 | CVE-2004-1110 | Candidate | The mtink status monitor before 1.0.5 for Epson printers allows local users to overwrite arbitrary files via a symlink attack on the epson temporary file. | Assigned (20041130) | None (candidate not yet proposed) | View | |
9539 | CVE-2004-1111 | Candidate | Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command, keep undeliverable DHCP packets in the queue instead of dropping them, which allows remote attackers to cause a denial of service (dropped traffic) via multiple undeliverable DHCP packets that exceed the input queue size. | Assigned (20041130) | None (candidate not yet proposed) | View | |
9540 | CVE-2004-1112 | Candidate | The buffer overflow trigger in Cisco Security Agent (CSA) before 4.0.3 build 728 waits five minutes for a user response before terminating the process, which could allow remote attackers to bypass the buffer overflow protection by sending additional buffer overflow attacks within the five minute timeout period. | Assigned (20041130) | None (candidate not yet proposed) | View | |
9541 | CVE-2004-1113 | Candidate | SQL injection vulnerability in SQLgrey Postfix greylisting service before 1.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) sender or (2) recipient e-mail addresses. | Assigned (20041130) | None (candidate not yet proposed) | View | |
9542 | CVE-2004-1114 | Candidate | Buffer overflow in the handling of command line arguments in Skype 1.0.x.94 through 1.0.x.98 allows remote attackers to execute arbitrary code via a callto:// URL with a long non-existent username, a different vulnerability than CVE-2004-1777. | Assigned (20041130) | None (candidate not yet proposed) | View |
Page 998 of 20943, showing 5 records out of 104715 total, starting on record 4986, ending on 4990