CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12870  CVE-2005-1664  Candidate  The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ViewState generated from one view to a different view, (2) reuse ViewState information after the application"s state has changed, or (3) use the ViewState to conduct attacks or expose content to third parties.  Assigned (20050518)  None (candidate not yet proposed)    View
12871  CVE-2005-1665  Candidate  The __VIEWSTATE functionality in Microsoft ASP.NET 1.x, when not cryptographically signed, allows remote attackers to cause a denial of service (CPU consumption) via deeply nested markup.  Assigned (20050518)  None (candidate not yet proposed)    View
12872  CVE-2005-1666  Candidate  Multiple buffer overflows in Orenosv HTTP/FTP Server 0.8.1 allow remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via long arguments to FTP commands such as MKD, RMD, or DELE, which are processed by the (1) ftp_xlate_path, (2) ftp_is_canonical, or (3) os_fn_nativize functions, or (4) a long SSI command that is processed by the parse_cmd function in cgissi.exe.  Assigned (20050518)  None (candidate not yet proposed)    View
12873  CVE-2005-1667  Candidate  DataTrac Activity Console 1.1 allows remote attackers to cause a denial of service via a long HTTP GET request.  Assigned (20050518)  None (candidate not yet proposed)    View
12874  CVE-2005-1668  Candidate  YusASP Web Asset Manager 1.0 allows remote attackers to gain privileges via a direct request to assetmanager.asp.  Assigned (20050518)  None (candidate not yet proposed)    View

Page 19362 of 20943, showing 5 records out of 104715 total, starting on record 96806, ending on 96810

Actions