CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
910 | CVE-1999-0930 | Entry | wwwboard allows a remote attacker to delete message board articles via a malformed argument. | View | |||
52344 | CVE-2011-4432 | Candidate | www/include/configuration/nconfigObject/contact/DB-Func.php in Merethis Centreon before 2.3.2 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach. | Assigned (20111109) | None (candidate not yet proposed) | View | |
8488 | CVE-2004-0060 | Candidate | WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Acknowledged in 2.46 release notes | View |
8489 | CVE-2004-0061 | Candidate | WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character. | Modified (20071113) | ACCEPT(2) Baker, Green | NOOP(4) Armstrong, Cole, Cox, Wall | Green> Ack"ed in 2.46 release notes | View |
156 | CVE-1999-0156 | Candidate | wu-ftpd FTP daemon allows any user and password combination. | Proposed (19990714) | ACCEPT(2) Northcutt, Shostack | NOOP(1) Baker | RECAST(1) Frech | REVIEWING(2) Christey, Prosser | Prosser> but so far can find no reference to this one | Frech> Our records indicate that this does not necessarly affect just wu-ftp (ie, | also affects IIS FTP server). | Christey> The references for XF:ftp-pwless are not specific enough, | e.g. in terms of version numbers. Perhaps this candidate | should be rejected due to insufficient information. | View |
Page 125 of 20943, showing 5 records out of 104715 total, starting on record 621, ending on 625