CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12696 | CVE-2005-1490 | Candidate | Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2, when the mailbox.dat file does not exist, allows remote authenticated users to determine if a file exists via the folder parameter to attachment.html. | Assigned (20050511) | None (candidate not yet proposed) | View | |
12697 | CVE-2005-1491 | Candidate | Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2 allows remote authenticated users to (1) move their home directory via viewaction.html or (2) move arbitrary files via the importfile parameter to importaction.html. | Assigned (20050511) | None (candidate not yet proposed) | View | |
12698 | CVE-2005-1492 | Candidate | Cross-site scripting (XSS) vulnerability in user.cgi in Gossamer Threads Links SQL 2.x and 3.0 allows remote attackers to inject arbitrary web script or HTML via the url parameter. | Assigned (20050511) | None (candidate not yet proposed) | View | |
12699 | CVE-2005-1493 | Candidate | Directory traversal vulnerability in SimpleCam 1.2 allows remote attackers to read arbitrary files via a .. (dot dot backslash) in the URL. | Assigned (20050511) | None (candidate not yet proposed) | View | |
12700 | CVE-2005-1494 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in admin.cgi in MegaBook 2.0 and 2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) entryid or (2) password parameter. | Assigned (20050511) | None (candidate not yet proposed) | View |
Page 19391 of 20943, showing 5 records out of 104715 total, starting on record 96951, ending on 96955