CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12865  CVE-2005-1659  Candidate  Cross-site scripting (XSS) vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to inject arbitrary Javascript via a URL with a "..." (triple dot) followed by an onmouseover event.  Assigned (20050518)  None (candidate not yet proposed)    View
12866  CVE-2005-1660  Candidate  HTMLJunction EZGuestbook stores the guestbook.mdb file under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the administrative password.  Assigned (20050518)  None (candidate not yet proposed)    View
12867  CVE-2005-1661  Candidate  Jeuce Personal Webserver 2.13 allows remote attackers to cause a denial of service (server crash) via a long GET request, possibly triggering a buffer overflow.  Assigned (20050518)  None (candidate not yet proposed)    View
12868  CVE-2005-1662  Candidate  Directory traversal vulnerability in Jeuce Personal Web Server 2.13 allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.  Assigned (20050518)  None (candidate not yet proposed)    View
12869  CVE-2005-1663  Candidate  Jeuce Personal Web Server 2.13 allows remote attackers to cause a denial of service (server crash) via a GET request beginning with "://".  Assigned (20050518)  None (candidate not yet proposed)    View

Page 19361 of 20943, showing 5 records out of 104715 total, starting on record 96801, ending on 96805

Actions