CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8065  CVE-2003-1241  Candidate  Cross-site scripting vulnerability (XSS) in (1) admin_index.php, (2) admin_pass.php, (3) admin_modif.php, and (4) admin_suppr.php in MyGuestbook 3.0 allows remote attackers to execute arbitrary PHP code by modifying the location parameter to reference a URL on a remote web server that contains file.php via script injected into the pseudo, email, and message parameters.  Assigned (20051116)  None (candidate not yet proposed)    View
6530  CVE-2002-2148  Candidate  Lucent Ascend MAX Router 5.0 and earlier, Lucent Ascend Pipeline Router 6.0.2 and earlier and Lucent DSLTerminator allows remote attackers to obtain sensitive information such as hostname, MAC, and IP address of the Ethernet interface via a discard (UDP port 9) packet, which causes the device to leak the information in the response.  Assigned (20051116)  None (candidate not yet proposed)    View
8066  CVE-2003-1242  Candidate  Sage 1.0 b3 allows remote attackers to obtain the root web server path via a URL request for a non-existent module, which returns the path in an error message.  Assigned (20051116)  None (candidate not yet proposed)    View
6531  CVE-2002-2149  Candidate  Buffer overflow in Lucent Access Point 300, 600, and 1500 Service Routers allows remote attackers to cause a denial of service (reboot) via a long HTTP request to the administrative interface.  Assigned (20051116)  None (candidate not yet proposed)    View
8067  CVE-2003-1243  Candidate  Cross-site scripting vulnerability (XSS) in Sage 1.0 b3 allows remote attackers to insert arbitrary HTML or web script via the mod parameter.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18724 of 20943, showing 5 records out of 104715 total, starting on record 93616, ending on 93620

Actions