CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5818  CVE-2002-1434  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Web mail module of Kerio MailServer 5.0 allow remote attackers to execute HTML script as other users via certain URLs.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5824  CVE-2002-1440  Candidate  The Gateway GS-400 server has a default root password of "0001n" that can not be changed via the administrative interface, which can allow attackers to gain root privileges.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5828  CVE-2002-1444  Candidate  The Google toolbar 1.1.60, when running on Internet Explorer 5.5 and 6.0, allows remote attackers to cause a denial of service (crash with an exception in oleaut32.dll) via malicious HTML, possibly related to small width and height parameters or an incorrect call to the Google.Search() function.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5829  CVE-2002-1445  Candidate  Cross-site scripting (XSS) vulnerability in CERN Proxy Server allows remote attackers to execute script as other users via a link to a non-existent page whose name contains the script, which is inserted into the resulting error page.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5833  CVE-2002-1449  Candidate  eUpload 1.0 stores the password.txt password file in plaintext under the web document root, which allows remote attackers to overwrite arbitrary files by reading password.txt.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View

Page 657 of 20943, showing 5 records out of 104715 total, starting on record 3281, ending on 3285

Actions