CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12258 | CVE-2005-1052 | Candidate | Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not properly display comma separated addresses in the From field in an e-mail message, which could allow remote attackers to spoof e-mail addresses. | Assigned (20050412) | None (candidate not yet proposed) | View | |
12259 | CVE-2005-1053 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in orderwiz.php in ModernBill 4.3.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) c_code or (2) aid parameters. | Assigned (20050412) | None (candidate not yet proposed) | View | |
12260 | CVE-2005-1054 | Candidate | PHP remote file inclusion vulnerability in news.php in ModernBill 4.3.0 and earlier allows remote attackers to execute arbitrary PHP code by modifying the DIR parameter to reference a URL on a remote web server that contains the code. | Assigned (20050412) | None (candidate not yet proposed) | View | |
12261 | CVE-2005-1055 | Candidate | TowerBlog 0.6 and earlier stores the login data file under the web root, which allows remote attackers to obtain the MD5 checksums of the username and password via a direct request to the _dat/login file. | Assigned (20050412) | None (candidate not yet proposed) | View | |
12262 | CVE-2005-1056 | Candidate | Unknown vulnerability in HP OpenView Network Node Manager (NMM) 6.2 through 6.4, and 7.01 through 7.50, allows remote attackers to cause a denial of service. | Assigned (20050412) | None (candidate not yet proposed) | View |
Page 1376 of 20943, showing 5 records out of 104715 total, starting on record 6876, ending on 6880