CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14275 | CVE-2005-3069 | Candidate | xferfaxstats in HylaFax 4.2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the xferfax$$ temporary file. | Assigned (20050927) | None (candidate not yet proposed) | View | |
26857 | CVE-2007-3500 | Candidate | Xeweb XEForum allows remote attackers to gain privileges via a modified xeforum cookie. | Assigned (20070629) | None (candidate not yet proposed) | View | |
40979 | CVE-2009-3544 | Candidate | Xerver HTTP Server 4.32 allows remote attackers to obtain the source code for a web page via an HTTP request with the addition of ::$DATA after the HTML file name. | Assigned (20091005) | None (candidate not yet proposed) | View | |
4840 | CVE-2002-0448 | Candidate | Xerver Free Web Server 2.10 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request that contains many "C:/" sequences. | Proposed (20020611) | ACCEPT(4) Alderson, Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall | View | |
42093 | CVE-2009-4658 | Candidate | Xerver 4.32 allows remote authenticated users to cause a denial of service (daemon crash) via a non-numeric web port assignment in the management interface. NOTE: this can be leveraged by non-authenticated attackers using CVE-2009-4657. | Assigned (20100303) | None (candidate not yet proposed) | View |
Page 91 of 20943, showing 5 records out of 104715 total, starting on record 451, ending on 455