CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6350 | CVE-2002-1968 | Candidate | Com21 DOXport 1100 series cable modem running firmware 2.1.1.106, and possibly other versions before 2.1.1.108.003, downloads a DOCSIS configuration file from a TFTP server running on the internal network, which allows local users to modify configuration of the modem via a malicious TFTP server. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13262 | CVE-2005-2056 | Candidate | The Quantum archive decompressor in Clam AntiVirus (ClamAV) before 0.86.1 allows remote attackers to cause a denial of service (application crash) via a crafted Quantum archive. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6351 | CVE-2002-1969 | Candidate | Magic Notebook 1.0b and 1.1b allows remote attackers to cause a denial of service (crash) via an invalid username during login. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13263 | CVE-2005-2057 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to inject arbitrary web script or HTML via the (1) Searchpage parameter to dosearch.php, (2) Number, (3) what, or (4) page parameter to newreply.php, (5) Number, (6) Board, or (7) what parameter to showprofile.php, (8) fpart or (9) page parameter to showflat.php, or (10) like parameter to showmembers.php. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6352 | CVE-2002-1970 | Candidate | SnortCenter 0.9.5, when configured to push Snort rules, stores the rules in a temporary file with world-readable and world-writable permissions, which allows local users to obtain usernames and passwords for the alert database servers. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 1747 of 20943, showing 5 records out of 104715 total, starting on record 8731, ending on 8735