NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46851  CVE-2012-5814  Weberknecht, as used in GitHub Gaug.es and other products, does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.    5.8  Medium  2017-01-19  2013-02-07  View
69640  CVE-2005-4002  WebEOC before 6.0.2 uses the same secret key for all installations, which allows attackers with the key to decrypt data from any WebEOC installation.    Medium  2017-01-03  2008-09-05  View
67982  CVE-2005-2281  WebEOC before 6.0.2 uses a weak encryption scheme for passwords, which makes it easier for attackers to crack passwords.    Medium  2017-01-03  2008-09-05  View
67986  CVE-2005-2285  WebEOC before 6.0.2 stores sensitive information in locations such as URIs, web pages, and configuration files, which allows remote attackers to obtain information such as Usernames, Passwords, Emergency information, medical information, and system configuration.    Medium  2017-01-03  2008-09-05  View
67984  CVE-2005-2283  WebEOC before 6.0.2 does not properly restrict the size of an uploaded file, which allows remote authenticated users to cause a denial of service (system and database resource consumption) via a large file.    2.1  Low  2017-01-03  2008-09-05  View

Page 416 of 17672, showing 5 records out of 88360 total, starting on record 2076, ending on 2080

Actions