CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13431  CVE-2005-2225  Candidate  Microsoft MSN Messenger allows remote attackers to cause a denial of service via a plaintext message containing the ".pif" string, which is interpreted as a malicious file extension and causes users to be kicked from a group conversation. NOTE: it has been reported that Gaim is also affected, so this may be an issue in the protocol or MSN servers.  Assigned (20050712)  None (candidate not yet proposed)    View
13432  CVE-2005-2226  Candidate  Microsoft Outlook Express 6.0 leaks the default news server account when a user responds to a "watched" conversation thread, which could allow remote attackers to obtain sensitive information.  Assigned (20050712)  None (candidate not yet proposed)    View
13433  CVE-2005-2227  Candidate  Softiacom wMailserver 1.0 stores passwords in plaintext in the DarsiteMAILSRVAdmin key, which allows local users to gain administrator privileges.  Assigned (20050712)  None (candidate not yet proposed)    View
13434  CVE-2005-2228  Candidate  Web Wiz Forums 7.9 and 8.0 allows remote attackers to view message titles of a hidden forum.  Assigned (20050712)  None (candidate not yet proposed)    View
13435  CVE-2005-2229  Candidate  Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.  Assigned (20050712)  None (candidate not yet proposed)    View

Page 19143 of 20943, showing 5 records out of 104715 total, starting on record 95711, ending on 95715

Actions