CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12696  CVE-2005-1490  Candidate  Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2, when the mailbox.dat file does not exist, allows remote authenticated users to determine if a file exists via the folder parameter to attachment.html.  Assigned (20050511)  None (candidate not yet proposed)    View
12697  CVE-2005-1491  Candidate  Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2 allows remote authenticated users to (1) move their home directory via viewaction.html or (2) move arbitrary files via the importfile parameter to importaction.html.  Assigned (20050511)  None (candidate not yet proposed)    View
12698  CVE-2005-1492  Candidate  Cross-site scripting (XSS) vulnerability in user.cgi in Gossamer Threads Links SQL 2.x and 3.0 allows remote attackers to inject arbitrary web script or HTML via the url parameter.  Assigned (20050511)  None (candidate not yet proposed)    View
12699  CVE-2005-1493  Candidate  Directory traversal vulnerability in SimpleCam 1.2 allows remote attackers to read arbitrary files via a .. (dot dot backslash) in the URL.  Assigned (20050511)  None (candidate not yet proposed)    View
12700  CVE-2005-1494  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in admin.cgi in MegaBook 2.0 and 2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) entryid or (2) password parameter.  Assigned (20050511)  None (candidate not yet proposed)    View

Page 19391 of 20943, showing 5 records out of 104715 total, starting on record 96951, ending on 96955

Actions