Security
Headlines
HeadlinesLatestCVEs

Tag

#ibm

CVE-2000-0137: IBM X-Force Exchange

The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE
#ibm
CVE-2000-0136: IBM X-Force Exchange

The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0135: IBM X-Force Exchange

The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0110: IBM X-Force Exchange

The WebSiteTool shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0108: IBM X-Force Exchange

The Intellivend shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0106: IBM X-Force Exchange

The EasyCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0123: IBM X-Force Exchange

The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via hidden form fields.

CVE-2000-0109: IBM X-Force Exchange

The mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that have no passwords or easily guessable default passwords.

CVE-2000-0126: IBM X-Force Exchange

Sample Internet Data Query (IDQ) scripts in IIS 3 and 4 allow remote attackers to read files via a .. (dot dot) attack.

CVE-1999-0892: IBM X-Force Exchange

Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font.