Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0847 Remote Denial of Service vulnerability in Code Ocean FTP Server 1.0
Code Ocean FTP server 1.0 allows remote attackers to cause a denial of service via a large number of connections.
network
low complexity
code-ocean
5.0
2005-05-02 CVE-2005-0846 Cross-Site Scripting vulnerability in Netwin Surgemail 2.2G3
Multiple cross-site scripting (XSS) vulnerabilities in the email auto-reply message in SurgeMail 2.2g3 allow remote attackers to inject arbitrary web script or HTML via the (1) message subject or (2) message header field.
network
netwin
4.3
2005-05-02 CVE-2005-0845 Directory traversal vulnerability in the Webmail interface in SurgeMail 2.2g3 allows remote authenticated users to write arbitrary files or directories via a ..
network
low complexity
netwin
5.0
2005-05-02 CVE-2005-0844 Cryptographic Issues vulnerability in Nortel Contivity 5.01
Nortel VPN client 5.01 stores the cleartext password in the memory of the Extranet.exe process, which could allow local users to obtain sensitive information.
local
low complexity
nortel CWE-310
4.6
2005-05-02 CVE-2005-0843 Unspecified vulnerability in Phorum 5.0.14A
CRLF injection vulnerability in search.php in Phorum 5.0.14a allows remote attackers to perform HTTP Response Splitting attacks via the body parameter, which is included in the resulting Location header.
network
low complexity
phorum
5.0
2005-05-02 CVE-2005-0842 Unspecified vulnerability in Kayako Esupport 2.3
Cross-site scripting (XSS) vulnerability in index.php in Kayako eSupport 2.3 allows remote attackers to inject arbitrary web script or HTML via the (1) _i or (2) _c parameter.
network
kayako
4.3
2005-05-02 CVE-2005-0837 Multiple vulnerability in Icecast XSL Parser
IceCast 2.20 allows remote attackers to bypass the XSL parser and obtain the source for XSL files via a request for a .xsl file with a trailing .
network
low complexity
icecast
5.0
2005-05-02 CVE-2005-0835 Multiple vulnerability in Belkin 54G Wireless Router F5D7130
The SNMP service in the Belkin 54G (F5D7130) wireless router allows remote attackers to cause a denial of service via unknown vectors.
network
low complexity
belkin
5.0
2005-05-02 CVE-2005-0834 Multiple vulnerability in Belkin 54G Wireless Router
Belkin 54G (F5D7130) wireless router enables SNMP by default in a manner that allows remote attackers to obtain sensitive information.
network
low complexity
belkin
5.0
2005-05-02 CVE-2005-0831 Remote Input Validation vulnerability in PHP-Post
PHP-Post allows remote attackers to spoof the names of other users by registering with a username containing hex-encoded characters.
network
low complexity
php-post
5.0