CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8065 | CVE-2003-1241 | Candidate | Cross-site scripting vulnerability (XSS) in (1) admin_index.php, (2) admin_pass.php, (3) admin_modif.php, and (4) admin_suppr.php in MyGuestbook 3.0 allows remote attackers to execute arbitrary PHP code by modifying the location parameter to reference a URL on a remote web server that contains file.php via script injected into the pseudo, email, and message parameters. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6530 | CVE-2002-2148 | Candidate | Lucent Ascend MAX Router 5.0 and earlier, Lucent Ascend Pipeline Router 6.0.2 and earlier and Lucent DSLTerminator allows remote attackers to obtain sensitive information such as hostname, MAC, and IP address of the Ethernet interface via a discard (UDP port 9) packet, which causes the device to leak the information in the response. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8066 | CVE-2003-1242 | Candidate | Sage 1.0 b3 allows remote attackers to obtain the root web server path via a URL request for a non-existent module, which returns the path in an error message. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6531 | CVE-2002-2149 | Candidate | Buffer overflow in Lucent Access Point 300, 600, and 1500 Service Routers allows remote attackers to cause a denial of service (reboot) via a long HTTP request to the administrative interface. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8067 | CVE-2003-1243 | Candidate | Cross-site scripting vulnerability (XSS) in Sage 1.0 b3 allows remote attackers to insert arbitrary HTML or web script via the mod parameter. | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 18724 of 20943, showing 5 records out of 104715 total, starting on record 93616, ending on 93620