CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10851  CVE-2004-2425  Candidate  Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to execute arbitrary commands via accent (`) and possibly other shell metacharacters in the query string to virtualinput.cgi.  Assigned (20050818)  None (candidate not yet proposed)    View
10852  CVE-2004-2426  Candidate  Directory traversal vulnerability in Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to bypass authentication via a .. (dot dot) in an HTTP POST request to ServerManager.srv, then use these privileges to conduct other activities, such as modifying files using editcgi.cgi.  Assigned (20050818)  None (candidate not yet proposed)    View
10853  CVE-2004-2427  Candidate  Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to obtain sensitive information via direct requests to (1) admin/getparam.cgi, (2) admin/systemlog.cgi, (3) admin/serverreport.cgi, and (4) admin/paramlist.cgi, modify system information via (5) setparam.cgi and (6) factorydefault.cgi, or (7) cause a denial of service (reboot) via restart.cgi.  Assigned (20050818)  None (candidate not yet proposed)    View
10854  CVE-2004-2428  Candidate  Abczone.it WWWguestbook 1.1 stores db/dbase.mdb under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the plaintext username and password.  Assigned (20050818)  None (candidate not yet proposed)    View
10855  CVE-2004-2429  Candidate  Multiple stack-based and heap-based buffer overflows in EnderUNIX spamGuard before 1.7-BETA allow remote attackers to execute arbitrary code via the (1) qmail_parseline and (2) sendmail_parseline functions in parser.c, (3) loadconfig and (4) removespaces functions in loadconfig.c, and possibly (5) unspecified functions in functions.c.  Assigned (20050818)  None (candidate not yet proposed)    View

Page 18979 of 20943, showing 5 records out of 104715 total, starting on record 94891, ending on 94895

Actions