CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13407 | CVE-2005-2201 | Candidate | Unknown vulnerability in the MicroServer Web Server for Xerox WorkCentre Pro Color 2128, 2636, and 3545, version 0.001.04.044 through 0.001.04.504, allow attackers to cause a denial of service or access files via crafted HTTP requests. | Assigned (20050711) | None (candidate not yet proposed) | View | |
13408 | CVE-2005-2202 | Candidate | Cross-site scripting (XSS) vulnerability in the MicroServer Web Server for Xerox WorkCentre Pro Color 2128, 2636, and 3545, version 0.001.04.044 through 0.001.04.504, allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | Assigned (20050711) | None (candidate not yet proposed) | View | |
13409 | CVE-2005-2203 | Candidate | login.php in phpWishlist before 0.1.15 allows remote attackers to bypass authentication via a direct request to admin.php. | Assigned (20050711) | None (candidate not yet proposed) | View | |
13410 | CVE-2005-2204 | Candidate | Cross-site scripting (XSS) vulnerability in Computer Associates (CA) eTrust SiteMinder 5.5, when the "CSSChecking" parameter is set to "NO," allows remote attackers to inject arbitrary web script or HTML via the (1) PASSWORD or (2) BUFFER parameters to smpwservicescgi.exe, (3) the TARGET parameter to login.fcc, and possibly other vectors. | Assigned (20050711) | None (candidate not yet proposed) | View | |
13411 | CVE-2005-2205 | Candidate | The ReadLog function in kaiseki.cgi in pngren allows remote attackers to execute arbitrary commands via shell metacharacters in the query string. | Assigned (20050711) | None (candidate not yet proposed) | View |
Page 19149 of 20943, showing 5 records out of 104715 total, starting on record 95741, ending on 95745