CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6063 | CVE-2002-1679 | Candidate | Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin 2.2.0 allows remote attackers to execute arbitrary script as other users by injecting script into a bulletin board message. | Assigned (20050621) | None (candidate not yet proposed) | View | |
13231 | CVE-2005-2025 | Candidate | Cisco VPN 3000 Concentrator before 4.1.7.F allows remote attackers to determine valid groupnames by sending an IKE Aggressive Mode packet with the groupname in the ID field, which generates a response if the groupname is valid, but does not generate a response for an invalid groupname. | Assigned (20050621) | None (candidate not yet proposed) | View | |
6064 | CVE-2002-1680 | Candidate | Cross-site scripting (XSS) vulnerability in CGI Online Worldweb Shopping 1.1 (a.k.a. COWS) allows remote attackers to execute arbitrary script as other users by injecting script into (1) diagnose.cgi or (2) compatible.cgi. | Assigned (20050621) | None (candidate not yet proposed) | View | |
13232 | CVE-2005-2026 | Candidate | Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 has a hard-coded account and password for debugging, which allows remote attackers to gain privileges. | Assigned (20050621) | None (candidate not yet proposed) | View | |
6065 | CVE-2002-1681 | Candidate | Cross-site scripting (XSS) vulnerability in Slashcode CVS releases June 17 through July 1 2002 allows remote attackers to execute arbitrary script as other users by injecting script into the paragraph <P> tag. | Assigned (20050621) | None (candidate not yet proposed) | View |
Page 19246 of 20943, showing 5 records out of 104715 total, starting on record 96226, ending on 96230