CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13407  CVE-2005-2201  Candidate  Unknown vulnerability in the MicroServer Web Server for Xerox WorkCentre Pro Color 2128, 2636, and 3545, version 0.001.04.044 through 0.001.04.504, allow attackers to cause a denial of service or access files via crafted HTTP requests.  Assigned (20050711)  None (candidate not yet proposed)    View
13408  CVE-2005-2202  Candidate  Cross-site scripting (XSS) vulnerability in the MicroServer Web Server for Xerox WorkCentre Pro Color 2128, 2636, and 3545, version 0.001.04.044 through 0.001.04.504, allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20050711)  None (candidate not yet proposed)    View
13409  CVE-2005-2203  Candidate  login.php in phpWishlist before 0.1.15 allows remote attackers to bypass authentication via a direct request to admin.php.  Assigned (20050711)  None (candidate not yet proposed)    View
13410  CVE-2005-2204  Candidate  Cross-site scripting (XSS) vulnerability in Computer Associates (CA) eTrust SiteMinder 5.5, when the "CSSChecking" parameter is set to "NO," allows remote attackers to inject arbitrary web script or HTML via the (1) PASSWORD or (2) BUFFER parameters to smpwservicescgi.exe, (3) the TARGET parameter to login.fcc, and possibly other vectors.  Assigned (20050711)  None (candidate not yet proposed)    View
13411  CVE-2005-2205  Candidate  The ReadLog function in kaiseki.cgi in pngren allows remote attackers to execute arbitrary commands via shell metacharacters in the query string.  Assigned (20050711)  None (candidate not yet proposed)    View

Page 19149 of 20943, showing 5 records out of 104715 total, starting on record 95741, ending on 95745

Actions