CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13091  CVE-2005-1885  Candidate  view.php in YaPiG 0.92b, 0.93u and 0.94u allows remote attackers to obtain sensitive information via a phid parameter that is not an integer, which reveals the path in an error message.  Assigned (20050608)  None (candidate not yet proposed)    View
18990  CVE-2006-2886  Candidate  view.php in KnowledgeTree Open Source 3.0.3 and earlier allows remote attackers to obtain the full installation path via a crafted fDocumentId parameter, which displays the path in the resulting error message. NOTE: this might be resultant from another vulnerability, since this vector also produces XSS.  Assigned (20060607)  None (candidate not yet proposed)    View
6328  CVE-2002-1946  Candidate  Videsh Sanchar Nigam Limited (VSNL) Integrated Dialer Software 1.2.000, when the "Save Password" option is used, stores the password with a weak encryption scheme (one-to-one mapping) in a registry key, which allows local users to obtain and decrypt the password.  Assigned (20050629)  None (candidate not yet proposed)    View
26886  CVE-2007-3529  Candidate  videos.php in PHPDirector 0.21 and earlier allows remote attackers to obtain sensitive information via an empty value of the id[] parameter, which reveals the path in an error message.  Assigned (20070703)  None (candidate not yet proposed)    View
19074  CVE-2006-2970  Candidate  videoPage.php in L0j1k tinyMuw 0.1.0 allows remote attackers to obtain sensitive information via a certain id parameter, probably with an invalid value, which reveals the path in an error message.  Assigned (20060612)  None (candidate not yet proposed)    View

Page 550 of 20943, showing 5 records out of 104715 total, starting on record 2746, ending on 2750

Actions