CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12436  CVE-2005-1230  Candidate  Directory traversal vulnerability in Yawcam 0.2.5 allows remote attackers to read arbitrary files via ".." (dot dot backslash) sequences in a GET request.  Assigned (20050422)  None (candidate not yet proposed)    View
6041  CVE-2002-1657  Candidate  PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack.  Assigned (20050422)  None (candidate not yet proposed)    View
12437  CVE-2005-1231  Candidate  Cross-site scripting (XSS) vulnerability in the NewTerm function in GlossaryModel.php in JAWS 0.4 allows remote attackers to inject arbitrary web script or HTML via the (1) term or (2) description.  Assigned (20050424)  None (candidate not yet proposed)    View
12438  CVE-2005-1232  Candidate  Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote attackers to execute arbitrary code via unknown vectors.  Assigned (20050424)  None (candidate not yet proposed)    View
12439  CVE-2005-1233  Candidate  Cross-site scripting (XSS) vulnerability in index.php in PHP Labs proFile allows remote attackers to inject arbitrary web script or HTML via the (1) dir or (2) file parameters.  Assigned (20050424)  None (candidate not yet proposed)    View

Page 1425 of 20943, showing 5 records out of 104715 total, starting on record 7121, ending on 7125

Actions