CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12870 | CVE-2005-1664 | Candidate | The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ViewState generated from one view to a different view, (2) reuse ViewState information after the application"s state has changed, or (3) use the ViewState to conduct attacks or expose content to third parties. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12871 | CVE-2005-1665 | Candidate | The __VIEWSTATE functionality in Microsoft ASP.NET 1.x, when not cryptographically signed, allows remote attackers to cause a denial of service (CPU consumption) via deeply nested markup. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12872 | CVE-2005-1666 | Candidate | Multiple buffer overflows in Orenosv HTTP/FTP Server 0.8.1 allow remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via long arguments to FTP commands such as MKD, RMD, or DELE, which are processed by the (1) ftp_xlate_path, (2) ftp_is_canonical, or (3) os_fn_nativize functions, or (4) a long SSI command that is processed by the parse_cmd function in cgissi.exe. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12873 | CVE-2005-1667 | Candidate | DataTrac Activity Console 1.1 allows remote attackers to cause a denial of service via a long HTTP GET request. | Assigned (20050518) | None (candidate not yet proposed) | View | |
12874 | CVE-2005-1668 | Candidate | YusASP Web Asset Manager 1.0 allows remote attackers to gain privileges via a direct request to assetmanager.asp. | Assigned (20050518) | None (candidate not yet proposed) | View |
Page 19362 of 20943, showing 5 records out of 104715 total, starting on record 96806, ending on 96810