CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8746  CVE-2004-0318  Candidate  Load Sharing Facility (LSF) 4.x, 5.x, and 6.x uses the LSF_EAUTH_UID environment variable, if it exists, instead of the real UID of the user, which could allow remote attackers within the local cluster to gain privileges.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8747  CVE-2004-0319  Candidate  Cross-site scripting (XSS) vulnerability in the font tag in ezBoard 7.3u allows remote attackers to execute arbitrary script as other users, as demonstrated using the background:url in a (1) font color or (2) font face argument.  Proposed (20040318)  ACCEPT(2) Armstrong, Cole | NOOP(3) Balinsky, Cox, Wall    View
8749  CVE-2004-0321  Candidate  Team Factor 1.25 and earlier allows remote attackers to cause a denial of service (crash) via a packet that uses a negative number to specify the size of the data block that follows, which causes Team Factor to read unallocated memory.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
8752  CVE-2004-0324  Candidate  Confirm 0.62 and earlier could allow remote attackers to execute arbitrary code via an e-mail header that contains shell metacharacters such as ", `, |, ;, or $.  Proposed (20040318)  ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall    View
8753  CVE-2004-0325  Candidate  TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (CPU consumption) via "//../" arguments to (1) mkd, (2) xmkd, (3) dele, (4) size, (5) retr, (6) stor, (7) appe, (8) rnfr, (9) rnto, (10) rmd, or (11) xrmd, as demonstrated using "//../qwerty".  Proposed (20040318)  ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall    View

Page 7 of 20943, showing 5 records out of 104715 total, starting on record 31, ending on 35

<<first 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 last>>

Actions