CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10473  CVE-2004-2047  Candidate  Directory traversal vulnerability in EasyWeb FileManager 1.0 RC-1 for PostNuke allows remote attackers to retrieve arbitrary files via a .. (dot dot) in the pathext parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10218  CVE-2004-1790  Candidate  Cross-site scripting (XSS) vulnerability in the web management interface in Edimax AR-6004 ADSL Routers allows remote attackers to inject arbitrary web script or HTML via the URL.  Assigned (20050504)  None (candidate not yet proposed)    View
10474  CVE-2004-2048  Candidate  radmin in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier starts a process port 25072 that can be accessed with a default "jstwo" password, which allows remote attackers to gain access.  Assigned (20050504)  None (candidate not yet proposed)    View
10219  CVE-2004-1791  Candidate  The web management interface in Edimax AR-6004 ADSL Routers uses a default administrator name and password, which also appear as the default login text for the management interface, which allows remote attackers to gain access.  Assigned (20050504)  None (candidate not yet proposed)    View
10475  CVE-2004-2049  Candidate  eSeSIX Thintune thin clients running firmware 2.4.38 and earlier store sensitive usernames and passwords in cleartext in configuration files for the keeper library, which allows attackers to gain access.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 19466 of 20943, showing 5 records out of 104715 total, starting on record 97326, ending on 97330

Actions