CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13269 | CVE-2005-2063 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to sendpassword.asp or (2) Keyword field in search.asp. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6358 | CVE-2002-1976 | Candidate | ifconfig, when used on the Linux kernel 2.2 and later, does not report when the network interface is in promiscuous mode if it was put in promiscuous mode using PACKET_MR_PROMISC, which could allow attackers to sniff the network without detection, as demonstrated using libpcap. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13270 | CVE-2005-2064 | Candidate | Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to forgot_password.asp, or the (2) FirstName, (3) LastName, (4) Username, (5) Password, (6) Address1, (7) Address2, (8) City, (9) ZipCode, (10) Email parameter to register.asp. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6359 | CVE-2002-1977 | Candidate | Network Associates PGP 7.0.4 and 7.1 does not time out according to the value set in the "Passphrase Cache" option, which could allow attackers to open encrypted files without providing a passphrase. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13271 | CVE-2005-2065 | Candidate | HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 1750 of 20943, showing 5 records out of 104715 total, starting on record 8746, ending on 8750