Security
Headlines
HeadlinesLatestCVEs

Tag

#ibm

CVE-2000-0106: IBM X-Force Exchange

The EasyCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE
#ibm
CVE-2000-0136: IBM X-Force Exchange

The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0135: IBM X-Force Exchange

The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0110: IBM X-Force Exchange

The WebSiteTool shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0134: IBM X-Force Exchange

The Check It Out shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0137: IBM X-Force Exchange

The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0109: IBM X-Force Exchange

The mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that have no passwords or easily guessable default passwords.

CVE-2000-0126: IBM X-Force Exchange

Sample Internet Data Query (IDQ) scripts in IIS 3 and 4 allow remote attackers to read files via a .. (dot dot) attack.

CVE-1999-0892: IBM X-Force Exchange

Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font.

CVE-1999-0862: IBM X-Force Exchange

Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a plaintext password file.