CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9858  CVE-2004-1430  Candidate  SQL injection vulnerability in the show_stats module in Arcade.php in IbProArcade allows remote attackers to execute arbitrary SQL code via the gameid parameter.  Assigned (20050212)  None (candidate not yet proposed)    View
9859  CVE-2004-1431  Candidate  FormMail.php 5.0, and possibly other versions, allows remote attackers to read arbitrary files via a full pathname in the ar_file (auto-reply) parameter.  Assigned (20050212)  None (candidate not yet proposed)    View
11205  CVE-2004-9998  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate has been used as a placeholder by multiple organizations for multiple issues, but it is invalid. Notes: All CVE users should search CVE for the proper identifier. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050212)  None (candidate not yet proposed)    View
11206  CVE-2004-9999  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate has been used as a placeholder by multiple organizations for multiple issues, but it is invalid. Notes: All CVE users should search CVE for the proper identifier. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050212)  None (candidate not yet proposed)    View
11578  CVE-2005-0372  Candidate  Directory traversal vulnerability in gftp before 2.0.18 for GTK+ allows remote malicious FTP servers to read arbitrary files via .. (dot dot) sequences in filenames returned from a LIST command.  Assigned (20050213)  None (candidate not yet proposed)    View

Page 1144 of 20943, showing 5 records out of 104715 total, starting on record 5716, ending on 5720

Actions