CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8890 | CVE-2004-0462 | Candidate | The built-in web servers for multiple networking devices do not set the Secure attribute for sensitive cookies in HTTPS sessions, which could cause the user agent to send those cookies in plaintext over an HTTP session with the same server. | Assigned (20040512) | None (candidate not yet proposed) | View | |
8891 | CVE-2004-0463 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20040512) | None (candidate not yet proposed) | View | |
8892 | CVE-2004-0464 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20040512) | None (candidate not yet proposed) | View | |
8893 | CVE-2004-0465 | Candidate | Directory traversal vulnerability in jretest.html in WebConnect 6.5 and 6.4.4, and possibly earlier versions, allows remote attackers to read keys within arbitrary INI formatted files via "..//" sequences in the WCP_USER parameter. | Assigned (20040512) | None (candidate not yet proposed) | View | |
8894 | CVE-2004-0466 | Candidate | WebConnect 6.5, 6.4.4, and possibly earlier versions allows remote attackers to cause a denial of service (hang) via a URL containing an MS-DOS device name such as (1) AUX, (2) CON, (3) PRN, (4) COM1, or (5) LPT1. | Assigned (20040512) | None (candidate not yet proposed) | View |
Page 865 of 20943, showing 5 records out of 104715 total, starting on record 4321, ending on 4325