CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14903  CVE-2005-3699  Candidate  Opera Web Browser 8.50 and 8.0 through 8.0.2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site.  Assigned (20051121)  None (candidate not yet proposed)    View
14919  CVE-2005-3715  Candidate  Senao SI-680H Wireless VoIP Phone Firmware 0.03.0839 leaves the VxWorks debugger UDP port 17185 available without authentication, which allows attackers to access the phone OS, obtain sensitive information, and cause a denial of service.  Assigned (20051121)  None (candidate not yet proposed)    View
14920  CVE-2005-3716  Candidate  The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public credentials that cannot be changed, which allows attackers to obtain sensitive information.  Assigned (20051121)  None (candidate not yet proposed)    View
14921  CVE-2005-3717  Candidate  The telnet daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has a default username "target" and password "password", which allows remote attackers to gain full access to the system.  Assigned (20051121)  None (candidate not yet proposed)    View
14922  CVE-2005-3718  Candidate  UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 does not allow users to disable access to (1) SNMP or (2) the rlogin port TCP 513, which allows remote attackers to exploit other vulnerabilities such as CVE-2005-3716, or execute arbitrary shell commands via rlogin, which does not require authentication.  Assigned (20051121)  None (candidate not yet proposed)    View

Page 18696 of 20943, showing 5 records out of 104715 total, starting on record 93476, ending on 93480

Actions