CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2510  CVE-2000-0941  Entry  Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "whois" parameter.        View
3278  CVE-2001-0461  Entry  template.cgi in Free On-Line Dictionary of Computing (FOLDOC) allows remote attackers to read files and execute commands via shell metacharacters in the argument to template.cgi.        View
3534  CVE-2001-0726  Entry  Outlook Web Access (OWA) in Microsoft Exchange 5.5 Server, when used with Internet Explorer, does not properly detect certain inline script, which can allow remote attackers to perform arbitrary actions on a user"s Exchange mailbox via an HTML e-mail message.        View
5326  CVE-2002-0938  Entry  Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action argument in a link to setup.exe.        View
5582  CVE-2002-1198  Entry  Bugzilla 2.16.x before 2.16.1 does not properly filter apostrophes from an email address during account creation, which allows remote attackers to execute arbitrary SQL via a SQL injection attack.        View

Page 20832 of 20943, showing 5 records out of 104715 total, starting on record 104156, ending on 104160

Actions