CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12858 | CVE-2005-1652 | Candidate | message.htm for Woppoware PostMaster 4.2.2 (build 3.2.5) allows remote attackers to bypass authentication by modifying the email parameter. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12859 | CVE-2005-1653 | Candidate | Cross-site scripting (XSS) vulnerability in message.htm for Woppoware PostMaster 4.2.2 (build 3.2.5) allows remote attackers to inject arbitrary web script or HTML via the email parameter. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12860 | CVE-2005-1654 | Candidate | Hosting Controller 6.1 Hotfix 1.9 and earlier allows remote attackers to register arbitrary users via a direct request to addsubsite.asp with the loginname and password parameters set. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12861 | CVE-2005-1655 | Candidate | AOL Instant Messenger 5.5.x and earlier allows remote attackers to cause a denial of service (client crash) via an invalid smiley icon location in the sml parameter of a font tag. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12862 | CVE-2005-1656 | Candidate | Mercur Messaging 2005 SP2 allows remote attackers to read the source code of .ctml files via a URL with a trailing hex-encoded space ("%20"). | Assigned (20050518) | None (candidate not yet proposed) | View |
Page 1583 of 20943, showing 5 records out of 104715 total, starting on record 7911, ending on 7915