CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1155  CVE-1999-1175  Entry  Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, which allows remote attackers to redirect HTTP traffic to arbitrary hosts via WCCP packets to UDP port 2048.        View
33845  CVE-2008-3728  Candidate  Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to determine the installation path, IP addresses, and error messages via direct requests to files under LOG/.  Assigned (20080820)  None (candidate not yet proposed)    View
33846  CVE-2008-3729  Candidate  Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to bypass authentication and obtain administrative access via a direct request with (1) an IsAdmin=true cookie value or (2) no cookie.  Assigned (20080820)  None (candidate not yet proposed)    View
22792  CVE-2006-6688  Candidate  Web Automated Perl Portal (WebAPP) 0.9.9.4, and 0.9.9.3.4 Network Edition (NE) (aka WebAPP.NET) allows remote attackers to bypass filtering mechanisms via unknown vectors. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20061221)  None (candidate not yet proposed)    View
5108  CVE-2002-0718  Entry  Web authoring command in Microsoft Content Management Server (MCMS) 2001 allows attackers to authenticate and upload executable content, by modifying the upload location, aka "Program Execution via MCMS Authoring Function."        View

Page 402 of 20943, showing 5 records out of 104715 total, starting on record 2006, ending on 2010

Actions