CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6575  CVE-2002-2193  Candidate  Cross-site scripting (XSS) vulnerability in mojo.cgi for Mojo Mail 2.7 allows remote attackers to inject arbitrary web script via the email parameter.  Assigned (20051116)  None (candidate not yet proposed)    View
6574  CVE-2002-2192  Candidate  Cross-site scripting (XSS) vulnerability in Perception LiteServe 2.0.1 allows remote attackers to execute arbitrary web script via (1) a Host: header when DNS wildcards are supported or (2) the query string in a "dir" request to indexed folders.  Assigned (20051116)  None (candidate not yet proposed)    View
6573  CVE-2002-2191  Candidate  Lotus Domino 5.0.9a and earlier, even when configured with the "DominoNoBanner=1" option, allows remote attackers to obtain potential sensitive information such as the version via a request for a non-existent .nsf database, which leaks the version in the HTTP banner.  Assigned (20051116)  None (candidate not yet proposed)    View
6572  CVE-2002-2190  Candidate  ArtsCore Studios CuteCast Forum 1.2 stores passwords in plaintext under the web document root, which allows remote attackers to obtain the passwords via an HTTP request to a .user file.  Assigned (20051116)  None (candidate not yet proposed)    View
6571  CVE-2002-2189  Candidate  Cross-site scripting (XSS) vulnerability in ActiveXperts Software ActiveWebserver allows remote attackers to execute arbitrary web script via a link.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 19629 of 20943, showing 5 records out of 104715 total, starting on record 98141, ending on 98145

Actions