CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6575 | CVE-2002-2193 | Candidate | Cross-site scripting (XSS) vulnerability in mojo.cgi for Mojo Mail 2.7 allows remote attackers to inject arbitrary web script via the email parameter. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6574 | CVE-2002-2192 | Candidate | Cross-site scripting (XSS) vulnerability in Perception LiteServe 2.0.1 allows remote attackers to execute arbitrary web script via (1) a Host: header when DNS wildcards are supported or (2) the query string in a "dir" request to indexed folders. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6573 | CVE-2002-2191 | Candidate | Lotus Domino 5.0.9a and earlier, even when configured with the "DominoNoBanner=1" option, allows remote attackers to obtain potential sensitive information such as the version via a request for a non-existent .nsf database, which leaks the version in the HTTP banner. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6572 | CVE-2002-2190 | Candidate | ArtsCore Studios CuteCast Forum 1.2 stores passwords in plaintext under the web document root, which allows remote attackers to obtain the passwords via an HTTP request to a .user file. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6571 | CVE-2002-2189 | Candidate | Cross-site scripting (XSS) vulnerability in ActiveXperts Software ActiveWebserver allows remote attackers to execute arbitrary web script via a link. | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 19629 of 20943, showing 5 records out of 104715 total, starting on record 98141, ending on 98145