CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12042 | CVE-2005-0836 | Candidate | Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.2_06 allows untrusted applications to gain privileges via the value parameter of a property tag in a JNLP file. | Assigned (20050322) | None (candidate not yet proposed) | View | |
12043 | CVE-2005-0837 | Candidate | IceCast 2.20 allows remote attackers to bypass the XSL parser and obtain the source for XSL files via a request for a .xsl file with a trailing . (dot). | Assigned (20050322) | None (candidate not yet proposed) | View | |
12044 | CVE-2005-0838 | Candidate | Multiple buffer overflows in the XSL parser for IceCast 2.20 may allow attackers to cause a denial of service and possibly execute arbitrary code via (1) a long test value in an xsl:when tag, (2) a long test value in an xsl:if tag, or (3) a long select value in an xsl:value-of tag. | Assigned (20050322) | None (candidate not yet proposed) | View | |
4227 | CVE-2001-1424 | Candidate | Alcatel Speed Touch ADSL modem running firmware KHDSAA.108, KHDSAA.132, KHDSBA.133, and KHDSAA.134 has a blank default password, which allows remote attackers to gain unauthorized access. | Assigned (20050322) | None (candidate not yet proposed) | View | |
4228 | CVE-2001-1425 | Candidate | The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login. | Assigned (20050322) | None (candidate not yet proposed) | View |
Page 19626 of 20943, showing 5 records out of 104715 total, starting on record 98126, ending on 98130