Show filters
114 Total Results
Displaying 91-100 of 114
Sort by:
Attacker Value
Unknown

CVE-2007-2592

Disclosure Date: May 11, 2007 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Nokia Intellisync Mobile Suite 6.4.31.2, 6.6.0.107, and 6.6.2.2, possibly involving Novell Groupwise Mobile Server and Nokia Intellisync Wireless Email Express, allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to de/pda/dev_logon.asp and (2) multiple unspecified vectors in (a) usrmgr/registerAccount.asp, (b) de/create_account.asp, and other files.
0
Attacker Value
Unknown

CVE-2007-2591

Disclosure Date: May 11, 2007 (last updated October 04, 2023)
usrmgr/userList.asp in Nokia Intellisync Mobile Suite 6.4.31.2, 6.6.0.107, and 6.6.2.2, possibly involving Novell Groupwise Mobile Server and Nokia Intellisync Wireless Email Express, allows remote attackers to modify user account details and cause a denial of service (account deactivation) via the userid parameter in an update action.
0
Attacker Value
Unknown

CVE-2007-2590

Disclosure Date: May 11, 2007 (last updated October 04, 2023)
Nokia Intellisync Mobile Suite 6.4.31.2, 6.6.0.107, and 6.6.2.2, possibly involving Novell Groupwise Mobile Server and Nokia Intellisync Wireless Email Express, allows remote attackers to obtain user names and other sensitive information via a direct request to (1) usrmgr/userList.asp or (2) usrmgr/userStatusList.asp.
0
Attacker Value
Unknown

CVE-2007-0523

Disclosure Date: January 26, 2007 (last updated October 04, 2023)
The Nokia N70 phone allows remote attackers to cause a denial of service (continual modal dialogs and UI unavailability) by repeatedly trying to OBEX push a file over Bluetooth, as demonstrated by ussp-push.
0
Attacker Value
Unknown

CVE-2006-4464

Disclosure Date: August 31, 2006 (last updated October 04, 2023)
The Nokia Browser, possibly Nokia Symbian 60 Browser 3rd edition, allows remote attackers to cause a denial of service (crash) via JavaScript that constructs a large Unicode string.
0
Attacker Value
Unknown

CVE-2006-3237

Disclosure Date: June 27, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in Enterprise Groupware System (EGS) 1.2.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the module parameter.
0
Attacker Value
Unknown

CVE-2006-0797

Disclosure Date: February 19, 2006 (last updated February 22, 2025)
Nokia N70 cell phone allows remote attackers to cause a denial of service (reboot or shutdown) through a wireless Bluetooth connection via a malformed Logical Link Control and Adaptation Protocol (L2CAP) packet whose length field is less than the actual length of the packet, possibly triggering a buffer overflow, as demonstrated using the Bluetooth Stack Smasher (BSS).
0
Attacker Value
Unknown

CVE-2005-3093

Disclosure Date: September 28, 2005 (last updated February 22, 2025)
Nokia 7610 and 3210 phones allows attackers to cause a denial of service via certain characters in the filename of a Bluetooth OBEX transfer.
0
Attacker Value
Unknown

CVE-2005-2716

Disclosure Date: August 29, 2005 (last updated February 22, 2025)
The event_pin_code_request function in the btsrv daemon (btsrv.c) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in a Bluetooth device name.
0
Attacker Value
Unknown

CVE-2005-2277

Disclosure Date: July 15, 2005 (last updated February 22, 2025)
Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename argument of a PUT command.
0