CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4702  CVE-2002-0310  Candidate  Netwin WebNews 1.1k CGI program includes several default usernames and cleartext passwords that cannot be deleted by the administrator, which allows remote attackers to gain privileges via the username/password combinations (1) testweb/newstest, (2) alwn3845/imaptest, (3) alwi3845/wtest3452, or (4) testweb2/wtest4879.  Modified (20050527)  MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:webnews-cgi-default-accounts(8255)  View
5476  CVE-2002-1089  Candidate  rwcgi60 CGI program in Oracle Reports Server, by design, provides sensitive information such as the full pathname, which could enable remote attackers to use the information in additional attacks.  Modified (20050610)  MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:oracle-reports-information-disclosure(9628)  View
4720  CVE-2002-0328  Candidate  Cross-site scripting vulnerability in Ikonboard 3.0.1 allows remote attackers to execute arbitrary script as other Ikonboard users and steal cookies via Javascript in an IMG tag.  Proposed (20020502)  MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:ikonboard-img-css(7460)  View
4822  CVE-2002-0430  Candidate  MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authentication and overwrite arbitrary files via a symlink attack on a temporary file, followed by a request to MultiFileUpload.php.  Proposed (20020611)  MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | REVIEWING(1) Alderson  Frech> XF:cobalt-multifileupload-bypass-auth(8395)  View
3243  CVE-2001-0425  Candidate  AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.  Proposed (20010524)  MODIFY(1) Frech | NOOP(4) Cole, Oliver, Wall, Ziese  Frech> XF:adcycle-adlibrarypm-unauthorized-access(6618)  View

Page 1144 of 20943, showing 5 records out of 104715 total, starting on record 5716, ending on 5720

Actions