NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46851 | CVE-2012-5814 | Weberknecht, as used in GitHub Gaug.es and other products, does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2013-02-07 | View | |
69640 | CVE-2005-4002 | WebEOC before 6.0.2 uses the same secret key for all installations, which allows attackers with the key to decrypt data from any WebEOC installation. | 2 | 4 | Medium | 2017-01-03 | 2008-09-05 | View | |
67982 | CVE-2005-2281 | WebEOC before 6.0.2 uses a weak encryption scheme for passwords, which makes it easier for attackers to crack passwords. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
67986 | CVE-2005-2285 | WebEOC before 6.0.2 stores sensitive information in locations such as URIs, web pages, and configuration files, which allows remote attackers to obtain information such as Usernames, Passwords, Emergency information, medical information, and system configuration. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
67984 | CVE-2005-2283 | WebEOC before 6.0.2 does not properly restrict the size of an uploaded file, which allows remote authenticated users to cause a denial of service (system and database resource consumption) via a large file. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View |
Page 416 of 17672, showing 5 records out of 88360 total, starting on record 2076, ending on 2080