CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8110  CVE-2003-1286  Candidate  HTTP Proxy in Sambar Server before 6.0 beta 6, when security.ini lacks a 127.0.0.1 proxydeny entry, allows remote attackers to send proxy HTTP requests to the Sambar Server"s administrative interface and external web servers, by making a "Connection: keep-alive" request before the proxy requests.  Assigned (20051122)  None (candidate not yet proposed)    View
8109  CVE-2003-1285  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Sambar Server before 6.0 beta 6 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) isapi/testisa.dll, (2) testcgi.exe, (3) environ.pl, (4) the query parameter to samples/search.dll, (5) the price parameter to mortgage.pl, (6) the query string in dumpenv.pl, (7) the query string to dumpenv.pl, and (8) the E-Mail field of the guestbook script (book.pl).  Assigned (20051122)  None (candidate not yet proposed)    View
8108  CVE-2003-1284  Candidate  Sambar Server before 6.0 beta 6 allows remote attackers to obtain sensitive information via direct requests to the default scripts (1) environ.pl and (2) testcgi.exe.  Assigned (20051122)  None (candidate not yet proposed)    View
8107  CVE-2003-1283  Candidate  KaZaA Media Desktop (KMD) 2.0 launches advertisements in the Internet Explorer (IE) local security zone, which could allow remote attackers to view local files and possibly execute arbitrary code.  Assigned (20051116)  None (candidate not yet proposed)    View
8106  CVE-2003-1282  Candidate  IBM Net.Data allows remote attackers to obtain sensitive information such as path names, server names and possibly user names and passwords by causing the (1) $(DTW_CURRENT_FILENAME), (2) $(DATABASE), (3) $(LOGIN), (4) $(PASSWORD), and possibly other predefined variables that can be echoed back to the user via a web form.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 19322 of 20943, showing 5 records out of 104715 total, starting on record 96606, ending on 96610

Actions