| Blogs | OSVDB ID | Disclosure Date | Title |
| Views: 71767 |
18293
Description:
By default, many Belkin 54G wireless routers using a default ssid of "belkin54g" are preconfigured with a default password. The "admin" account has a null password which is publicly known and documented. This allows attackers to trivially access the program or system as the routers come preconfigured with remote telnet access enabled.
|
2005-07-15
|
Belkin 54G Routers Admin Account Default Null Password
|
| Views: 44345 |
13002
Description:
AWStats contains a flaw that may allow a malicious user to issue arbitray commands under the web server privileges. The issue is triggered when using the pipe character (|) and shell metacaracters in the 'configdir' variable of the awstats.pl script. Such input is not santitized before being passed to the perl 'open()' command to be executed.
|
2005-01-01
|
AWStats awstats.pl configdir Parameter Arbitrary Command Execution
|
| Views: 27934 |
40621
Description:
Simple PHP Blog contains a flaw that allows a remote Cross-Site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps and/or confirmation for sensitive transactions to delete posts. By using a crafted URL (e.g. a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2007-10-17
|
Simple PHP Blog (SPHPBlog) add_link.php link_id Parameter CSRF
|
| Views: 25945 |
382
Description:
By default, PostgresSQL installs without a default password for the postgres user account. This username and password combination is publicly known and documented. This allows attackers to trivially access the program or system with administrative priveleges.
|
1999-07-17
|
PostgreSQL Server Default Password
|
| Views: 22268 |
65465
Description:
WMS-CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'printpage.asp' script not properly sanitizing user-supplied input to the 'psPrice', 'pr' and 'sbr' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-06-06
|
WMS-CMS printpage.asp Multiple Parameter SQL Injection
|
| Views: 22071 |
3092
Description:
A potentially interesting file, directory or CGI was found on the web server. While there is no known vulnerability or exploit associated with this, it may contain sensitive information which can be disclosed to unauthenticated remote users, or aid in more focused attacks.
|
1994-01-01
|
Interesting Web Document Found
|
| Views: 19590 |
877
Description:
RFC compliant web servers support the TRACE HTTP method, which contains a flaw that may lead to an unauthorized information disclosure. The TRACE method is used to debug web server connections and allows the client to see what is being received at the other end of the request chain. Enabled by default in all major web servers, a remote attacker may abuse the HTTP TRACE functionality, i.e. cross-site scripting (XSS), which will disclose sensitive configuration information resulting in a loss of confidentiality.
|
2003-01-20
|
Multiple Web Server Dangerous HTTP Method TRACE
|
| Views: 17738 |
821
Description:
By default, Linksys routers install with a default password. The administrative account has a password of admin which is publicly known and documented. This allows attackers to trivially access the program or system.
|
2002-09-12
|
Linksys Router Default Password
|
| Views: 16583 |
21307
Description:
OvBB contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the thread.php script not properly sanitizing user-supplied input to the 'threadid' variable. Followup research along with vendor dispute indicates this issue can not be used to manipulate SQL queries. It is believed that non-numeric input may cause an SQL error giving the appearance of injection capability.
|
2005-11-23
|
OvBB thread.php threadid Parameter SQL Injection
|
| Views: 15298 |
44643
Description:
A buffer overflow exists in HD Audio Codec Driver. RTKVHDA.sys and RTKVHDA64.sys fail to validate IOCTL requests resulting in an integer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2008-04-23
|
Realtek HD Audio Codec Driver RTKVHDA.sys / RTKVHDA64.sys IOCTL Request Handling Overflow
|
| Views: 14471 |
75811
Description:
By default, Ducati Diavel motorcycles install with a default ignition password. The bike can be started using a manufacturer default PIN, set to the last 4 numbers of the Vehicle Identification Number (VIN), which is publicly known and documented. This allows attackers to trivially access the bicycle and enjoy the 162 horsepower and wind blowing through your hair.
|
2011-04-05
|
Ducati Diavel Motorcycle Default Ignition Password
|
| Views: 13927 |
28946
Description:
A remote stack-based buffer overflow exists in Microsoft Internet Explorer. The browser's vml rendering engine fails to check the length of a fill parameter on the rect tag resulting in a stack-based buffer overflow. With a specially crafted request that contains a vml graphic, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2006-09-19
|
Microsoft IE Vector Markup Language (VML) Arbitrary Code Execution
|
| Views: 13797 |
71172
Description:
Nucleus CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'user' parameter upon submission to the index.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-03-14
|
Nucleus CMS index.php user Parameter XSS
|
| Views: 13660 |
16866
Description:
A remote overflow exists in Terminator 3: War of the Machines. The application fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted request containing an overly long CD-key hash, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2005-05-26
|
Terminator 3: War of the Machines Client CD-key Overflow
|
| Views: 13255 |
28364
Description:
Cybozu Garoon contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the phonemessage Facility not properly sanitizing user-supplied input to the 'uid' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-08-28
|
Cybozu Garoon phonemessage Facility uid Parameter SQL Injection
|
| Views: 12643 |
592
Description:
By default, Zyxel routers install with a default password. The administrative account has a password of 1234 which is publicly known and documented. This allows attackers to trivially access the program or system.
|
2002-09-12
|
ZyXEL Multiple Routers Default Administrator Password
|
| Views: 12435 |
24745
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in awstats.pl in AWStats 6.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the config parameter. NOTE: this might be the same core issue as CVE-2005-2732.
|
2006-04-18
|
AWStats awstats.pl Multiple Parameter XSS
|
| Views: 11769 |
4030
Description:
The TCP stack implementation of numerous vendors contains a flaw that may allow a remote denial of service. The issue is triggered when spoofed TCP Reset packets are received by the targeted TCP stack, and will result in loss of availability for the attacked TCP services.
|
2004-04-20
|
TCP/IP Sequence Prediction Blind Reset Spoofing DoS
|
| Views: 11699 |
27502
Description:
Nucleus has been reported to contain a flaw that may allow a remote attacker to execute arbitrary commands. The issue is supposedly due to the action.php, media.php, server.php and api_metaweblog.inc.php scripts not properly sanitizing user input supplied to the 'DIR_LIBS' variable. However, subsequent evaluation by another researcher indicates the DIR_LIBS variable is previously defined by config.php and not user controlled.
|
2006-06-16
|
Nucleus Multiple Script Remote File Inclusion
|
| Views: 9311 |
18679
Description:
DVBBS contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'page' variable upon submission to the 'dispbbs.asp' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-08-08
|
DVBBS dispbbs.asp page Parameter XSS
|
| Views: 9022 |
76929
Description:
Unknown / Incomplete
|
2011-08-08
|
Juniper Junos MX Series BGP Update Ktree::createFourWayNode MPC DoS
|
| Views: 8742 |
12184
Description:
PHP contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a remote attacker makes certain HTTP requests with crafted arguments, which will disclose PHP version and another sensitive information resulting in a loss of confidentiality.
|
2004-11-28
|
PHP expose_php Directive Version / Information Disclosure
|
| Views: 8508 |
49243
Description:
Microsoft Windows Server Service contains a flaw that may allow a malicious user to remotely execute arbitrary code. The issue is triggered when a crafted RPC request is handled. It is possible that the flaw may allow remote code execution resulting in a loss of integrity.
|
2008-10-23
|
Microsoft Windows Server Service Crafted RPC Request Handling Unspecified Remote Code Execution
|
| Views: 8459 |
23246
Description:
By default, some Kyocera printers install with an default password. The 'admin' account has an empty password, which is publicly known and documented. This allows attackers to trivially access the system.
|
2006-02-16
|
Kyocera Telnet Default Admin Account
|
| Views: 8328 |
3233
Description:
A default file, directory or CGI program which installed by default with the web server or installed software was found. While there is no known vulnerability or exploit associated with this, default files often reveal sensitive information or contain unknown or undisclosed vulnerabilities. The presence of such files may also reveal information about the web server version or operating system.
|
1994-01-01
|
Default Web Server Page
|
| Views: 8256 |
63032
Description:
CKForms Component for Joomla! contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'fid' parameter (when "option" is set to "com_ckforms", "controller" is set to "ckdata", and "layout" is set to "detail"). This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-03-17
|
CKForms Component for Joomla! index.php fid Parameter SQL Injection
|
| Views: 8234 |
13920
Description:
PHP=Fusion contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered to the 'viewthread.php' script not properly sanitizing user-supplied input to the 'forum_id' or 'forum_cat' parameters. This will allow remote attackers to view protected forum information resulting in a loss of confidentiality.
|
2005-02-08
|
PHP-Fusion viewthread.php Arbitrary Thread Access
|
| Views: 8122 |
30768
Description:
By default, APC installs with a default password on the integrated HTTP server (TCP Port 3052). The 'apc' account has a password of 'apc' which is publicly known and documented. This allows attackers to trivially access the program or system.
|
2000-09-15
|
APC PowerChute HTTP Server Default Account
|
| Views: 8099 |
55895
Description:
(Description Provided by CVE) : The design of the W3C XML Signature Syntax and Processing (XMLDsig) recommendation, as implemented in products including (1) the Oracle Security Developer Tools component in Oracle Application Server 10.1.2.3, 10.1.3.4, and 10.1.4.3IM; (2) the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, and 8.1 SP6; (3) Mono before 2.4.2.2; (4) XML Security Library before 1.2.12; (5) IBM WebSphere Application Server Versions 6.0 through 6.0.2.33, 6.1 through 6.1.0.23, and 7.0 through 7.0.0.1; (6) Sun JDK and JRE Update 14 and earlier; (7) Microsoft .NET Framework 3.0 through 3.0 SP2, 3.5, and 4.0; and other products uses a parameter that defines an HMAC truncation length (HMACOutputLength) but does not require a minimum for this length, which allows attackers to spoof HMAC-based signatures and bypass authentication by specifying a truncation length with a small number of bits.
|
2009-07-14
|
Oracle Application Server Security Developer Tools HMACOutputLength Signature Spoofing Weakness
|
| Views: 7935 |
55907
Description:
(Description Provided by CVE) : The design of the W3C XML Signature Syntax and Processing (XMLDsig) recommendation, as implemented in products including (1) the Oracle Security Developer Tools component in Oracle Application Server 10.1.2.3, 10.1.3.4, and 10.1.4.3IM; (2) the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, and 8.1 SP6; (3) Mono before 2.4.2.2; (4) XML Security Library before 1.2.12; (5) IBM WebSphere Application Server Versions 6.0 through 6.0.2.33, 6.1 through 6.1.0.23, and 7.0 through 7.0.0.1; (6) Sun JDK and JRE Update 14 and earlier; (7) Microsoft .NET Framework 3.0 through 3.0 SP2, 3.5, and 4.0; and other products uses a parameter that defines an HMAC truncation length (HMACOutputLength) but does not require a minimum for this length, which allows attackers to spoof HMAC-based signatures and bypass authentication by specifying a truncation length with a small number of bits.
|
2009-07-14
|
Oracle BEA WebLogic Server Web Services Package HMACOutputLength Signature Spoofing Weakness
|
| Views: 7832 |
63031
Description:
CKForms Component for Joomla! contains a flaw that may allow a remote attacker to disclose potentially sensitive information. The issue is due to the 'index.php' script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../)and URL-encoded NULL bytes, supplied to the 'controller' parameter (when "option" is set to "com_ckforms"). This may allow an attacker to include a file from the targeted host that contains arbitrary commands or code that will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system accessible by the web server.
|
2010-03-17
|
CKForms Component for Joomla! index.php controller Parameter Traversal Local File Inclusion
|
| Views: 7255 |
13832
Description:
AWStats contains a flaw that may allow a malicious user to issue arbitrary commands under the webserver privileges. The issue is triggered when passing perl commands to the 'PluginMode' variable of the awstats.pl script via a colon (:) character. It is possible that the flaw may allow execution of arbitrary commands resulting in a loss of integrity.
|
2005-02-14
|
AWStats awstats.pl PluginMode Parameter Arbitrary Command Execution
|
| Views: 7216 |
14988
Description:
XMB Forum contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate multiple user supplied arguments upon submission to the forumdisplay.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2004-03-26
|
XMB Forum forumdisplay.php Multiple Parameter XSS
|
| Views: 7111 |
397
Description:
Web Servers contains a flaw that may allow a remote attacker to upload arbitrary files. The issue is triggered when the HTTP method 'PUT' is allowed. It is possible that the flaw may allow a remote attacker to upload arbitrary files resulting in a loss of integrity.
|
1994-01-01
|
Multiple Web Server Dangerous HTTP Method PUT
|
| Views: 7047 |
132
Description:
By default, HP Jet Direct printers install without a password. This lack of password is publicly known and documented. This allows attackers to trivially access the system.
|
1997-10-04
|
HP JetDirect Default Password
|
| Views: 6946 |
13834
Description:
(Description Provided by CVE) : awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to obtain sensitive information by setting the debug parameter.
|
2005-02-14
|
AWStats awstats.pl debug mode Information Disclosure
|
| Views: 6938 |
13621
Description:
Microsoft Outlook Web Access contains a flaw within owalogon.asp that may allow a malicious user to perform account enumeration. The issue is triggered when an attacker sends a specially crafted URL to a user who is using Outlook Web Access, which redirects them to a predefined site. It is possible that the flaw may allow account enumeration from the URL resulting in a loss of confidentiality.
|
2005-02-08
|
Microsoft Outlook Web Access (OWA) owalogon.asp Redirection Account Enumeration
|
| Views: 6880 |
25257
Description:
Big Webmaster Guestbook contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'name', 'mail', 'site', 'city', 'state' and 'country' fields upon submission to the 'addguest.cgi' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-05-04
|
Big Webmaster Guestbook addguest.cgi Multiple Field XSS
|
| Views: 6514 |
12627
Description:
PHProxy contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the error variable upon submission to the index.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2004-12-27
|
PHProxy index.php error Parameter XSS
|
| Views: 6504 |
22111
Description:
AdesGuestbook contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'totalRows_rsRead' variable upon submission to the 'read.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-12-30
|
AdesGuestbook read.php totalRows_rsRead Parameter XSS
|