CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28635  CVE-2007-5278  Candidate  Zomplog 3.8.1 and earlier stores potentially sensitive information under the web root with insufficient access control, which allows remote attackers to download files that were uploaded by users, as demonstrated by obtaining a directory listing via a direct request to /upload and then retrieving individual files. NOTE: in a non-default configuration, the directory listing is denied, but filenames may be predicable.  Assigned (20071008)  None (candidate not yet proposed)    View
67342  CVE-2013-7395  Candidate  ZOLL Defibrillator / Monitor X Series has a default (1) supervisor password and (2) service password, which allows physically proximate attackers to modify device configuration and cause a denial of service (adverse human health effects).  Assigned (20140812)  None (candidate not yet proposed)    View
30113  CVE-2007-6756  Candidate  ZOLL Defibrillator / Monitor M Series, E Series, and R Series have a default password for System Configuration mode, which allows physically proximate attackers to modify device configuration and cause a denial of service (adverse human health effects).  Assigned (20140812)  None (candidate not yet proposed)    View
41139  CVE-2009-3704  Candidate  ZoIPer 2.22, and possibly other versions before 2.24 Library 5324, allows remote attackers to cause a denial of service (crash) via a SIP INVITE request with an empty Call-Info header.  Assigned (20091016)  None (candidate not yet proposed)    View
27715  CVE-2007-4358  Candidate  Zoidcom 0.6.7 and earlier allows remote attackers to cause a denial of service (application crash) via a JOIN packet (aka connection packet) containing 0x69 in the ninth byte, which triggers a "double-delete" of trace data, a different vulnerability than CVE-2005-1643.  Assigned (20070815)  None (candidate not yet proposed)    View

Page 17 of 20943, showing 5 records out of 104715 total, starting on record 81, ending on 85

Actions