CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8060  CVE-2003-1236  Candidate  Multiple format string vulnerabilities in the logger function in netzio.c for Tanne 0.6.17 allows remote attackers to execute arbitrary code via format string specifiers in syslog.  Assigned (20051116)  None (candidate not yet proposed)    View
6525  CVE-2002-2143  Candidate  The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers to gain unauthorized access to the web server by viewing the source of admin.html.  Assigned (20051116)  None (candidate not yet proposed)    View
8061  CVE-2003-1237  Candidate  Cross-site scripting vulnerability (XSS) in WWWBoard 2.0A2.1 and earlier allows remote attackers to inject arbitrary HTML or web script via a message post.  Assigned (20051116)  None (candidate not yet proposed)    View
6526  CVE-2002-2144  Candidate  Directory traversal vulnerability in BearShare 4.0.5 and 4.0.6 allows remote attackers to read files outside of the web root by hex-encoding the "/" (forward slash) or "." (dot) characters.  Assigned (20051116)  None (candidate not yet proposed)    View
8062  CVE-2003-1238  Candidate  Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authentication information via cookies by injecting arbitrary HTML or script into op of the (1) Team, (2) News, and (3) Liens modules.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18722 of 20943, showing 5 records out of 104715 total, starting on record 93606, ending on 93610

Actions