CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12629  CVE-2005-1423  Candidate  Directory traversal vulnerability in the mail program in 602LAN SUITE 2004.0.05.0413 allows remote attackers to cause a denial of service and determine the presence of arbitrary files via .. sequences in the A parameter.  Assigned (20050503)  None (candidate not yet proposed)    View
12630  CVE-2005-1424  Candidate  StumbleInside GoText 1.01 stores sensitive username, mail address,and phone number information in plaintext in the GoText.bin file, which allows local users to obtain that information.  Assigned (20050503)  None (candidate not yet proposed)    View
12631  CVE-2005-1425  Candidate  Uapplication Uguestbook 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for mdb-database/guestbook.mdb.  Assigned (20050503)  None (candidate not yet proposed)    View
12632  CVE-2005-1426  Candidate  Uapplication Ublog Reload stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for mdb-database/blog.mdb (aka mdb-database/blog.msb).  Assigned (20050503)  None (candidate not yet proposed)    View
12633  CVE-2005-1427  Candidate  Uapplication Uphotogallery stores the database under the web document root, which allows remote attackers to obtain sensitive information via a direct request to uphotogallery.mdb.  Assigned (20050503)  None (candidate not yet proposed)    View

Page 1464 of 20943, showing 5 records out of 104715 total, starting on record 7316, ending on 7320

Actions