CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14928 | CVE-2005-3724 | Candidate | Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 allows remote attackers to obtain sensitive information and possibly cause a denial of service via a direct connection to UDP port 9090, which is undocumented and does not require authentication. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14929 | CVE-2005-3725 | Candidate | Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 uses hardcoded IP addresses for its DNS servers, which could allow remote attackers to cause a denial of service or hijack Zyxel phones by attacking or spoofing the hardcoded DNS servers. NOTE: it could be argued that this issue reflects an inherent limitation of DNS itself, so perhaps it should not be included in CVE. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14930 | CVE-2005-3726 | Candidate | SQL injection vulnerability in Interspire ArticleLive NX 0.3 allows remote attackers to execute arbitrary SQL commands via the Query parameter. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14931 | CVE-2005-3727 | Candidate | SQL injection vulnerability in debug/query_results.jsp in Idetix Software Systems Revize CMS allows remote attackers to execute arbitrary SQL commands via the query parameter. | Assigned (20051121) | None (candidate not yet proposed) | View | |
14932 | CVE-2005-3728 | Candidate | Idetix Software Systems Revize CMS stores conf/revize.xml under the web document root with insufficient access control, which allows remote attackers to obtain sensitive configuration information. | Assigned (20051121) | None (candidate not yet proposed) | View |
Page 18698 of 20943, showing 5 records out of 104715 total, starting on record 93486, ending on 93490