CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14065  CVE-2005-2859  Candidate  Savant Web Server stores user credentials in plaintext in the SavantUsers registry key, which allows local users to gain privileges.  Assigned (20050908)  None (candidate not yet proposed)    View
14066  CVE-2005-2860  Candidate  Cross-site scripting (XSS) vulnerability in Nikto 1.35 and earlier allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.  Assigned (20050908)  None (candidate not yet proposed)    View
14067  CVE-2005-2861  Candidate  Cross-site scripting (XSS) vulnerability in N-Stealth Commercial Edition before 5.8.0.38 and Free Edition before 5.8.1.03 allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.  Assigned (20050908)  None (candidate not yet proposed)    View
14068  CVE-2005-2862  Candidate  ADSL Road Runner modem in the Annex A family has a service running on port 224, which allows remote attackers to login to the modem with a blank password and gain unauthorized access.  Assigned (20050908)  None (candidate not yet proposed)    View
14069  CVE-2005-2863  Candidate  Cross-site scripting (XSS) vulnerability in openwebmail-main.pl in OpenWebMail 2.41 allows remote attackers to inject arbitrary web script or HTML via the sessionid parameter.  Assigned (20050908)  None (candidate not yet proposed)    View

Page 18918 of 20943, showing 5 records out of 104715 total, starting on record 94586, ending on 94590

Actions