CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14903 | CVE-2005-3699 | Candidate | Opera Web Browser 8.50 and 8.0 through 8.0.2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14919 | CVE-2005-3715 | Candidate | Senao SI-680H Wireless VoIP Phone Firmware 0.03.0839 leaves the VxWorks debugger UDP port 17185 available without authentication, which allows attackers to access the phone OS, obtain sensitive information, and cause a denial of service. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14920 | CVE-2005-3716 | Candidate | The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public credentials that cannot be changed, which allows attackers to obtain sensitive information. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14921 | CVE-2005-3717 | Candidate | The telnet daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has a default username "target" and password "password", which allows remote attackers to gain full access to the system. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14922 | CVE-2005-3718 | Candidate | UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 does not allow users to disable access to (1) SNMP or (2) the rlogin port TCP 513, which allows remote attackers to exploit other vulnerabilities such as CVE-2005-3716, or execute arbitrary shell commands via rlogin, which does not require authentication. | Assigned (20051121) | None (candidate not yet proposed) | View |
Page 18696 of 20943, showing 5 records out of 104715 total, starting on record 93476, ending on 93480