CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14928  CVE-2005-3724  Candidate  Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 allows remote attackers to obtain sensitive information and possibly cause a denial of service via a direct connection to UDP port 9090, which is undocumented and does not require authentication.  Assigned (20051121)  None (candidate not yet proposed)    View
14929  CVE-2005-3725  Candidate  Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 uses hardcoded IP addresses for its DNS servers, which could allow remote attackers to cause a denial of service or hijack Zyxel phones by attacking or spoofing the hardcoded DNS servers. NOTE: it could be argued that this issue reflects an inherent limitation of DNS itself, so perhaps it should not be included in CVE.  Assigned (20051121)  None (candidate not yet proposed)    View
14930  CVE-2005-3726  Candidate  SQL injection vulnerability in Interspire ArticleLive NX 0.3 allows remote attackers to execute arbitrary SQL commands via the Query parameter.  Assigned (20051121)  None (candidate not yet proposed)    View
14931  CVE-2005-3727  Candidate  SQL injection vulnerability in debug/query_results.jsp in Idetix Software Systems Revize CMS allows remote attackers to execute arbitrary SQL commands via the query parameter.  Assigned (20051121)  None (candidate not yet proposed)    View
14932  CVE-2005-3728  Candidate  Idetix Software Systems Revize CMS stores conf/revize.xml under the web document root with insufficient access control, which allows remote attackers to obtain sensitive configuration information.  Assigned (20051121)  None (candidate not yet proposed)    View

Page 18698 of 20943, showing 5 records out of 104715 total, starting on record 93486, ending on 93490

Actions