CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8364 | CVE-2003-1540 | Candidate | WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain authentication information via a direct request to (1) !pwds.txt and (2) !nicks.txt. | Assigned (20080212) | None (candidate not yet proposed) | View | |
85200 | CVE-2015-7923 | Candidate | Westermo WeOS before 4.19.0 uses the same SSL private key across different customers" installations, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key. | Assigned (20151022) | None (candidate not yet proposed) | View | |
15480 | CVE-2005-4276 | Candidate | Westell Versalink 327W allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD). NOTE: the provenance of this issue is unknown; the details are obtained solely from third party information. | Assigned (20051216) | None (candidate not yet proposed) | View | |
27723 | CVE-2007-4366 | Candidate | WengoPhone 2.1 allows remote attackers to cause a denial of service (device crash) via a SIP INVITE message without a Content-Type header. | Assigned (20070815) | None (candidate not yet proposed) | View | |
55075 | CVE-2012-1832 | Candidate | WellinTech KingView 6.53 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a crafted packet to (1) TCP or (2) UDP port 2001. | Assigned (20120321) | None (candidate not yet proposed) | View |
Page 225 of 20943, showing 5 records out of 104715 total, starting on record 1121, ending on 1125