CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10215  CVE-2004-1787  Candidate  SQL injection vulnerability in PostCalendar 4.0.0 allows remote attackers to execute arbitrary SQL commands via search queries.  Assigned (20050504)  None (candidate not yet proposed)    View
10471  CVE-2004-2045  Candidate  The HTTP administration interface on Conceptronic CADSLR1 ADSL router running firmware 3.04n allows remote attackers to cause a denial of service (device reboot) via an HTTP request with a long username.  Assigned (20050504)  None (candidate not yet proposed)    View
10216  CVE-2004-1788  Candidate  ASP-Nuke 1.3 and earlier places user credentials under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to main.mdb.  Assigned (20050504)  None (candidate not yet proposed)    View
10472  CVE-2004-2046  Candidate  Unknown vulnerability in APC PowerChute Business Edition 6.0 through 7.0.1 allows remote attackers to cause a denial of service via unknown attack vectors.  Assigned (20050504)  None (candidate not yet proposed)    View
10217  CVE-2004-1789  Candidate  Cross-site scripting (XSS) vulnerability in the web management interface in ZyWALL 10 4.07 allows remote attackers to inject arbitrary web script or HTML via the rpAuth_1 page.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 19465 of 20943, showing 5 records out of 104715 total, starting on record 97321, ending on 97325

Actions