CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14837  CVE-2005-3633  Candidate  HTTP response splitting vulnerability in frameset.htm in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to inject arbitrary HTML headers via the sap-exiturl parameter.  Assigned (20051116)  None (candidate not yet proposed)    View
14838  CVE-2005-3634  Candidate  frameset.htm in the BSP runtime in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to log users out and redirect them to arbitrary web sites via a close command in the sap-sessioncmd parameter and a URL in the sap-exiturl parameter.  Assigned (20051116)  None (candidate not yet proposed)    View
14839  CVE-2005-3635  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in SAP Web Application Server (WAS) 6.10 through 7.00 allow remote attackers to inject arbitrary web script or HTML via (1) the sap-syscmd in sap-syscmd and (2) the BspApplication field in the SYSTEM PUBLIC test application.  Assigned (20051116)  None (candidate not yet proposed)    View
14840  CVE-2005-3636  Candidate  Cross-site scripting (XSS) vulnerability in SAP Web Application Server (WAS) 6.10 allows remote attackers to inject arbitrary web script or HTML via Error Pages.  Assigned (20051116)  None (candidate not yet proposed)    View
16120  CVE-2006-0016  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18765 of 20943, showing 5 records out of 104715 total, starting on record 93821, ending on 93825

Actions