CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8364  CVE-2003-1540  Candidate  WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain authentication information via a direct request to (1) !pwds.txt and (2) !nicks.txt.  Assigned (20080212)  None (candidate not yet proposed)    View
85200  CVE-2015-7923  Candidate  Westermo WeOS before 4.19.0 uses the same SSL private key across different customers" installations, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key.  Assigned (20151022)  None (candidate not yet proposed)    View
15480  CVE-2005-4276  Candidate  Westell Versalink 327W allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD). NOTE: the provenance of this issue is unknown; the details are obtained solely from third party information.  Assigned (20051216)  None (candidate not yet proposed)    View
27723  CVE-2007-4366  Candidate  WengoPhone 2.1 allows remote attackers to cause a denial of service (device crash) via a SIP INVITE message without a Content-Type header.  Assigned (20070815)  None (candidate not yet proposed)    View
55075  CVE-2012-1832  Candidate  WellinTech KingView 6.53 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a crafted packet to (1) TCP or (2) UDP port 2001.  Assigned (20120321)  None (candidate not yet proposed)    View

Page 225 of 20943, showing 5 records out of 104715 total, starting on record 1121, ending on 1125

Actions