CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8060 | CVE-2003-1236 | Candidate | Multiple format string vulnerabilities in the logger function in netzio.c for Tanne 0.6.17 allows remote attackers to execute arbitrary code via format string specifiers in syslog. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6525 | CVE-2002-2143 | Candidate | The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers to gain unauthorized access to the web server by viewing the source of admin.html. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8061 | CVE-2003-1237 | Candidate | Cross-site scripting vulnerability (XSS) in WWWBoard 2.0A2.1 and earlier allows remote attackers to inject arbitrary HTML or web script via a message post. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6526 | CVE-2002-2144 | Candidate | Directory traversal vulnerability in BearShare 4.0.5 and 4.0.6 allows remote attackers to read files outside of the web root by hex-encoding the "/" (forward slash) or "." (dot) characters. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8062 | CVE-2003-1238 | Candidate | Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authentication information via cookies by injecting arbitrary HTML or script into op of the (1) Team, (2) News, and (3) Liens modules. | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 18722 of 20943, showing 5 records out of 104715 total, starting on record 93606, ending on 93610