CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13269  CVE-2005-2063  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to sendpassword.asp or (2) Keyword field in search.asp.  Assigned (20050629)  None (candidate not yet proposed)    View
6358  CVE-2002-1976  Candidate  ifconfig, when used on the Linux kernel 2.2 and later, does not report when the network interface is in promiscuous mode if it was put in promiscuous mode using PACKET_MR_PROMISC, which could allow attackers to sniff the network without detection, as demonstrated using libpcap.  Assigned (20050629)  None (candidate not yet proposed)    View
13270  CVE-2005-2064  Candidate  Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to forgot_password.asp, or the (2) FirstName, (3) LastName, (4) Username, (5) Password, (6) Address1, (7) Address2, (8) City, (9) ZipCode, (10) Email parameter to register.asp.  Assigned (20050629)  None (candidate not yet proposed)    View
6359  CVE-2002-1977  Candidate  Network Associates PGP 7.0.4 and 7.1 does not time out according to the value set in the "Passphrase Cache" option, which could allow attackers to open encrypted files without providing a passphrase.  Assigned (20050629)  None (candidate not yet proposed)    View
13271  CVE-2005-2065  Candidate  HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 1750 of 20943, showing 5 records out of 104715 total, starting on record 8746, ending on 8750

Actions