CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14677  CVE-2005-3471  Candidate  Directory traversal vulnerability in the ruleset view for MailWatch for MailScanner 1.0.2 allows remote attackers to access arbitrary files.  Assigned (20051102)  None (candidate not yet proposed)    View
14678  CVE-2005-3472  Candidate  Unspecified vulnerability in Sun Java System Communications Express 2005Q1 and 2004Q2 allows local and remote attackers to read sensitive information from configuration files.  Assigned (20051102)  None (candidate not yet proposed)    View
14679  CVE-2005-3473  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog 0.4.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) entry, (2) blog_subject, and (3) blog_text parameters (involving the temp_subject variable) in (a) preview_cgi.php and (b) preview_static_cgi.php, or (4) scheme_name parameter and (5) bg_color parameters (involving the preset_name and result variables) in (c) colors.php.  Assigned (20051102)  None (candidate not yet proposed)    View
14680  CVE-2005-3474  Candidate  The aries.sys driver in Sony First4Internet XCP DRM software hides any file, registry key, or process with a name that starts with "$sys$", which allows attackers to hide activities on a system that uses XCP.  Assigned (20051102)  None (candidate not yet proposed)    View
14681  CVE-2005-3475  Candidate  Hasbani Web Server (WindWeb) 2.0 allows remote attackers to cause a denial of service (infinite loop) via HTTP crafted GET requests.  Assigned (20051102)  None (candidate not yet proposed)    View

Page 18790 of 20943, showing 5 records out of 104715 total, starting on record 93946, ending on 93950

Actions