CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4336  CVE-2001-1536  Candidate  Autogalaxy stores usernames and passwords in cleartext in cookies, which makes it easier for remote attackers to obtain authentication information and gain unauthorized access via sniffing or a cross-site scripting attack.  Assigned (20050714)  None (candidate not yet proposed)    View
4337  CVE-2001-1537  Candidate  The default "basic" security setting" in config.php for TWIG webmail 2.7.4 and earlier stores cleartext usernames and passwords in cookies, which could allow attackers to obtain authentication information and gain privileges.  Assigned (20050714)  None (candidate not yet proposed)    View
4338  CVE-2001-1538  Candidate  SpeedXess HA-120 DSL router has a default administrative password of "speedxess", which allows remote attackers to gain access.  Assigned (20050714)  None (candidate not yet proposed)    View
4339  CVE-2001-1539  Candidate  Stack consumption vulnerability in Internet Explorer The JavaScript settimeout function in Internet Explorer allows remote attackers to cause a denial of service (crash) via the JavaScript settimeout function. NOTE: the vendor could not reproduce the problem.  Assigned (20050714)  None (candidate not yet proposed)    View
4340  CVE-2001-1540  Candidate  IPRoute 0.973, 0.974 and 1.18 allows remote attackers to cause a denial of service via fragmented IP packets that split the TCP header.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 868 of 20943, showing 5 records out of 104715 total, starting on record 4336, ending on 4340

Actions