CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12258  CVE-2005-1052  Candidate  Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not properly display comma separated addresses in the From field in an e-mail message, which could allow remote attackers to spoof e-mail addresses.  Assigned (20050412)  None (candidate not yet proposed)    View
12259  CVE-2005-1053  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in orderwiz.php in ModernBill 4.3.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) c_code or (2) aid parameters.  Assigned (20050412)  None (candidate not yet proposed)    View
12260  CVE-2005-1054  Candidate  PHP remote file inclusion vulnerability in news.php in ModernBill 4.3.0 and earlier allows remote attackers to execute arbitrary PHP code by modifying the DIR parameter to reference a URL on a remote web server that contains the code.  Assigned (20050412)  None (candidate not yet proposed)    View
12261  CVE-2005-1055  Candidate  TowerBlog 0.6 and earlier stores the login data file under the web root, which allows remote attackers to obtain the MD5 checksums of the username and password via a direct request to the _dat/login file.  Assigned (20050412)  None (candidate not yet proposed)    View
12262  CVE-2005-1056  Candidate  Unknown vulnerability in HP OpenView Network Node Manager (NMM) 6.2 through 6.4, and 7.01 through 7.50, allows remote attackers to cause a denial of service.  Assigned (20050412)  None (candidate not yet proposed)    View

Page 1376 of 20943, showing 5 records out of 104715 total, starting on record 6876, ending on 6880

Actions