CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12042  CVE-2005-0836  Candidate  Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.2_06 allows untrusted applications to gain privileges via the value parameter of a property tag in a JNLP file.  Assigned (20050322)  None (candidate not yet proposed)    View
12043  CVE-2005-0837  Candidate  IceCast 2.20 allows remote attackers to bypass the XSL parser and obtain the source for XSL files via a request for a .xsl file with a trailing . (dot).  Assigned (20050322)  None (candidate not yet proposed)    View
12044  CVE-2005-0838  Candidate  Multiple buffer overflows in the XSL parser for IceCast 2.20 may allow attackers to cause a denial of service and possibly execute arbitrary code via (1) a long test value in an xsl:when tag, (2) a long test value in an xsl:if tag, or (3) a long select value in an xsl:value-of tag.  Assigned (20050322)  None (candidate not yet proposed)    View
4227  CVE-2001-1424  Candidate  Alcatel Speed Touch ADSL modem running firmware KHDSAA.108, KHDSAA.132, KHDSBA.133, and KHDSAA.134 has a blank default password, which allows remote attackers to gain unauthorized access.  Assigned (20050322)  None (candidate not yet proposed)    View
4228  CVE-2001-1425  Candidate  The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.  Assigned (20050322)  None (candidate not yet proposed)    View

Page 19626 of 20943, showing 5 records out of 104715 total, starting on record 98126, ending on 98130

Actions