Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0837 Multiple vulnerability in Icecast XSL Parser
IceCast 2.20 allows remote attackers to bypass the XSL parser and obtain the source for XSL files via a request for a .xsl file with a trailing .
network
low complexity
icecast
5.0
2005-05-02 CVE-2005-0835 Multiple vulnerability in Belkin 54G Wireless Router F5D7130
The SNMP service in the Belkin 54G (F5D7130) wireless router allows remote attackers to cause a denial of service via unknown vectors.
network
low complexity
belkin
5.0
2005-05-02 CVE-2005-0834 Multiple vulnerability in Belkin 54G Wireless Router
Belkin 54G (F5D7130) wireless router enables SNMP by default in a manner that allows remote attackers to obtain sensitive information.
network
low complexity
belkin
5.0
2005-05-02 CVE-2005-0831 Remote Input Validation vulnerability in PHP-Post
PHP-Post allows remote attackers to spoof the names of other users by registering with a username containing hex-encoded characters.
network
low complexity
php-post
5.0
2005-05-02 CVE-2005-0829 Unspecified vulnerability in PHP Fusion PHP Fusion 5.01
Cross-site scripting (XSS) vulnerability in setuser.php of the Digitanium addon to PHP-Fusion 5.01 allows remote attackers to inject arbitrary web script or HTML via the (1) user_name or (2) user_pass parameters.
network
php-fusion
4.3
2005-05-02 CVE-2005-0826 Denial Of Service vulnerability in OllyDbg Library Module Name
OllyDbg 1.10 and earlier allows remote attackers to cause a denial of service (application crash) via a dynamic link library (DLL) with a long filename.
network
low complexity
ollydbg
5.0
2005-05-02 CVE-2005-0824 Link Following vulnerability in Mathopd
The internal_dump function in Mathopd before 1.5p5, and 1.6x before 1.6b6 BETA, when Mathopd is running with the -n option, allows local users to overwrite arbitrary files via a symlink attack on dump files that are triggered by a SIGWINCH signal.
local
low complexity
mathopd CWE-59
5.5
2005-05-02 CVE-2005-0823 Local Credential Storage vulnerability in Thepoolclub Ipool and Isnooker
ThePoolClub (1) iPool and (2) iSnooker 1.6.81 and earlier stores usernames and passwords in cleartext in the MyDetails.txt file, which allows local users to gain privileges.
local
low complexity
thepoolclub
4.6
2005-05-02 CVE-2005-0820 Microsoft Office InfoPath 2003 SP1 includes sensitive information in the Manifest.xsf file in a custom .xsn form, which allows attackers to obtain printer and network information, obtain the database name, username, and password, or obtain the internal web server name.
network
low complexity
microsoft
5.0
2005-05-02 CVE-2005-0819 Unspecified vulnerability in Novell Netware 6.5
The xvesa code in Novell Netware 6.5 SP2 and SP3 allows remote attackers to redirect the xsession without authentication via a direct request to GUIMirror/Start.
network
low complexity
novell
5.0