CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6350  CVE-2002-1968  Candidate  Com21 DOXport 1100 series cable modem running firmware 2.1.1.106, and possibly other versions before 2.1.1.108.003, downloads a DOCSIS configuration file from a TFTP server running on the internal network, which allows local users to modify configuration of the modem via a malicious TFTP server.  Assigned (20050629)  None (candidate not yet proposed)    View
13262  CVE-2005-2056  Candidate  The Quantum archive decompressor in Clam AntiVirus (ClamAV) before 0.86.1 allows remote attackers to cause a denial of service (application crash) via a crafted Quantum archive.  Assigned (20050629)  None (candidate not yet proposed)    View
6351  CVE-2002-1969  Candidate  Magic Notebook 1.0b and 1.1b allows remote attackers to cause a denial of service (crash) via an invalid username during login.  Assigned (20050629)  None (candidate not yet proposed)    View
13263  CVE-2005-2057  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to inject arbitrary web script or HTML via the (1) Searchpage parameter to dosearch.php, (2) Number, (3) what, or (4) page parameter to newreply.php, (5) Number, (6) Board, or (7) what parameter to showprofile.php, (8) fpart or (9) page parameter to showflat.php, or (10) like parameter to showmembers.php.  Assigned (20050629)  None (candidate not yet proposed)    View
6352  CVE-2002-1970  Candidate  SnortCenter 0.9.5, when configured to push Snort rules, stores the rules in a temporary file with world-readable and world-writable permissions, which allows local users to obtain usernames and passwords for the alert database servers.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 1747 of 20943, showing 5 records out of 104715 total, starting on record 8731, ending on 8735

Actions