Show filters
121 Total Results
Displaying 101-110 of 121
Sort by:
Attacker Value
Unknown
CVE-2005-2159
Disclosure Date: July 06, 2005 (last updated February 22, 2025)
mshftp.dll in PlanetDNS PlanetFileServer 2.0.1.3 allows remote attackers to cause a denial of service (application crash) via a long request.
0
Attacker Value
Unknown
CVE-2004-0678
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) in one2planet.infolet.InfoServlet in 12Planet Chat Server 2.9 allows remote attackers to execute arbitrary script as other users via the page parameter.
0
Attacker Value
Unknown
CVE-2003-1507
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Planet Technology WGSD-1020 and WSW-2401 Ethernet switches use a default "superuser" account with the "planet" password, which allows remote attackers to gain administrative access.
0
Attacker Value
Unknown
CVE-2003-1541
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
PlanetMoon Guestbook tr3.a stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the admin script password, and other passwords, via a direct request to files/passwd.txt.
0
Attacker Value
Unknown
CVE-2002-1489
Disclosure Date: April 02, 2003 (last updated February 22, 2025)
Buffer overflow in PlanetDNS PlanetWeb 1.14 and earlier allows remote attackers to execute arbitrary code via (1) an HTTP GET request with a long URL or (2) a request with a long method name.
0
Attacker Value
Unknown
CVE-2002-1655
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause a denial of service (crash) via a wp-html-rend request.
0
Attacker Value
Unknown
CVE-2002-1654
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP Basic Authentication via the wp-force-auth Web Publisher command, which provides a distinct attack vector and may make it easier to conduct brute force password guessing without detection.
0
Attacker Value
Unknown
CVE-2002-1315
Disclosure Date: November 29, 2002 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows remote attackers to execute web script or HTML as the iPlanet administrator by injecting the desired script into error logs, and possibly escalating privileges by using the XSS vulnerability in conjunction with another issue (CVE-2002-1316).
0
Attacker Value
Unknown
CVE-2002-1316
Disclosure Date: November 29, 2002 (last updated February 22, 2025)
importInfo in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows the web administrator to execute arbitrary commands via shell metacharacters in the dir parameter, and possibly allows remote attackers to exploit this vulnerability via a separate XSS issue (CVE-2002-1315).
0
Attacker Value
Unknown
CVE-2002-0845
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Buffer overflow in Sun ONE / iPlanet Web Server 4.1 and 6.0 allows remote attackers to execute arbitrary code via an HTTP request using chunked transfer encoding.
0