CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11520  CVE-2005-0314  Candidate  Cross-site scripting (XSS) vulnerability in user.php in Magic Winmail Server 4.0 Build 1112 allows remote attackers to inject arbitrary web script or HTML via the personal information fields.  Assigned (20050210)  None (candidate not yet proposed)    View
11519  CVE-2005-0313  Candidate  Multiple directory traversal vulnerabilities in Magic Winmail Server 4.0 Build 1112 allow remote attackers to (1) upload arbitrary files via certain parameters to upload.php or (2) read arbitrary files via certain parameters to download.php, and remote authenticated users to read, create, or delete arbitrary directories and files via the IMAP commands (3) CREATE, (4) EXAMINE, (5) SELECT, or (6) DELETE.  Assigned (20050210)  None (candidate not yet proposed)    View
11518  CVE-2005-0312  Candidate  WarFTPD 1.82 RC9, when running as an NT service, allows remote authenticated users to cause a denial of service (access violation) via a CWD command with a crafted pathname, as demonstrated using a large string of "%s" sequences, possibly indicating a format string vulnerability.  Assigned (20050210)  None (candidate not yet proposed)    View
11517  CVE-2005-0311  Candidate  Ingate Firewall 4.1.3 and earlier does not terminate the PPTP session for an active user when the administrator disables that user from a resource, which could allow remote authenticated users to retain unauthorized access to resources.  Assigned (20050210)  None (candidate not yet proposed)    View
11516  CVE-2005-0310  Candidate  Exponent 0.95 allows remote attackers to obtain sensitive information via a direct HTTP request to (1) search.info.php, (2) permissions.info.php, (3) security.info.php, (4) formcontrol.php, or (5) file_modules.php, which reveals the path in an error message because the pathos_core_version variable is undefined.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 18640 of 20943, showing 5 records out of 104715 total, starting on record 93196, ending on 93200

Actions