CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14959  CVE-2005-3755  Candidate  Directory traversal vulnerability in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to determine the existence of arbitrary files via a relative path from a style sheet directory, then comparing the resulting error messages.  Assigned (20051122)  None (candidate not yet proposed)    View
14960  CVE-2005-3756  Candidate  Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to port scan arbitrary hosts via URLs with modified targets and ports, then comparing the resulting error messages to determine open and closed ports.  Assigned (20051122)  None (candidate not yet proposed)    View
14961  CVE-2005-3757  Candidate  The Saxon XSLT parser in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to obtain sensitive information and execute arbitrary code via dangerous Java class methods in select attribute of xsl:value-of tags in XSLT style sheets, such as (1) system-property, (2) sys:getProperty, and (3) run:exec.  Assigned (20051122)  None (candidate not yet proposed)    View
14962  CVE-2005-3758  Candidate  Cross-site scripting (XSS) vulnerability in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to inject arbitrary Javascript, and possibly other web script or HTML, via a proxystylesheet variable that contains a malicious XSLT style sheet.  Assigned (20051122)  None (candidate not yet proposed)    View
14963  CVE-2005-3759  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Horde before 3.0.7 allow remote attackers to inject arbitrary web script or HTML via the (1) gzip/tar and (2) css MIME viewers, which do not filter or escape dangerous HTML when extracting and displaying attachments.  Assigned (20051122)  None (candidate not yet proposed)    View

Page 18688 of 20943, showing 5 records out of 104715 total, starting on record 93436, ending on 93440

Actions