CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11493  CVE-2005-0287  Candidate  Bottomline Webseries Payment Application allows remote attackers to read arbitrary files on the network via a report template with modified ReportPath or ReportName values.  Assigned (20050210)  None (candidate not yet proposed)    View
11494  CVE-2005-0288  Candidate  The change password functionality in Bottomline Webseries Payment Application does not require the old password when users enter a new password, which could allow remote authenticated users to change other users" passwords.  Assigned (20050210)  None (candidate not yet proposed)    View
11495  CVE-2005-0289  Candidate  Apple AirPort Express prior to 6.1.1 and Extreme prior to 5.5.1, configured as a Wireless Data Service (WDS), allows remote attackers to cause a denial of service (device freeze) by connecting to UDP port 161 and before link-state change occurs.  Assigned (20050210)  None (candidate not yet proposed)    View
11496  CVE-2005-0290  Candidate  NETGEAR FVS318 running firmware 2.4, and possibly other versions, allows remote attackers to bypass the filters using hex encoded URLs, as demonstrated using a hex encoded file extension.  Assigned (20050210)  None (candidate not yet proposed)    View
11497  CVE-2005-0291  Candidate  Cross-site scripting (XSS) vulnerability in the log viewer in NETGEAR FVS318 running firmware 2.4, and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via a blocked URL phrase.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 19825 of 20943, showing 5 records out of 104715 total, starting on record 99121, ending on 99125

Actions