CVE List

Id CVE No. Status Description Phase Votes Comments Actions
910  CVE-1999-0930  Entry  wwwboard allows a remote attacker to delete message board articles via a malformed argument.        View
52344  CVE-2011-4432  Candidate  www/include/configuration/nconfigObject/contact/DB-Func.php in Merethis Centreon before 2.3.2 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach.  Assigned (20111109)  None (candidate not yet proposed)    View
8488  CVE-2004-0060  Candidate  WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request.  Modified (20071113)  ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall  Green> Acknowledged in 2.46 release notes  View
8489  CVE-2004-0061  Candidate  WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character.  Modified (20071113)  ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall  Green> Ack"ed in 2.46 release notes  View
156  CVE-1999-0156  Candidate  wu-ftpd FTP daemon allows any user and password combination.  Proposed (19990714)  ACCEPT(2) Northcutt, Shostack | NOOP(1) Baker | RECAST(1) Frech | REVIEWING(2) Christey, Prosser  Prosser> but so far can find no reference to this one | Frech> Our records indicate that this does not necessarly affect just wu-ftp (ie, | also affects IIS FTP server). | Christey> The references for XF:ftp-pwless are not specific enough, | e.g. in terms of version numbers. Perhaps this candidate | should be rejected due to insufficient information.  View

Page 125 of 20943, showing 5 records out of 104715 total, starting on record 621, ending on 625

Actions