CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14837 | CVE-2005-3633 | Candidate | HTTP response splitting vulnerability in frameset.htm in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to inject arbitrary HTML headers via the sap-exiturl parameter. | Assigned (20051116) | None (candidate not yet proposed) | View | |
14838 | CVE-2005-3634 | Candidate | frameset.htm in the BSP runtime in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to log users out and redirect them to arbitrary web sites via a close command in the sap-sessioncmd parameter and a URL in the sap-exiturl parameter. | Assigned (20051116) | None (candidate not yet proposed) | View | |
14839 | CVE-2005-3635 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in SAP Web Application Server (WAS) 6.10 through 7.00 allow remote attackers to inject arbitrary web script or HTML via (1) the sap-syscmd in sap-syscmd and (2) the BspApplication field in the SYSTEM PUBLIC test application. | Assigned (20051116) | None (candidate not yet proposed) | View | |
14840 | CVE-2005-3636 | Candidate | Cross-site scripting (XSS) vulnerability in SAP Web Application Server (WAS) 6.10 allows remote attackers to inject arbitrary web script or HTML via Error Pages. | Assigned (20051116) | None (candidate not yet proposed) | View | |
16120 | CVE-2006-0016 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 18765 of 20943, showing 5 records out of 104715 total, starting on record 93821, ending on 93825