CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11579  CVE-2005-0373  Candidate  Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.  Assigned (20050213)  None (candidate not yet proposed)    View
11580  CVE-2005-0374  Candidate  Cross-site scripting (XSS) vulnerability in Bitboard 2.5 and earlier allows remote attackers to inject arbitrary web script or HTML via an [img] bbcode image tag with an event such as mouseover.  Assigned (20050213)  None (candidate not yet proposed)    View
11581  CVE-2005-0375  Candidate  imageview.php in SGallery 1.01 allows remote attackers to obtain sensitive information via an HTTP request with (1) idalbum and (2) idimage unset, which reveals the installation path in an error message for the sql_fetch_row function.  Assigned (20050213)  None (candidate not yet proposed)    View
11582  CVE-2005-0376  Candidate  PHP remote file inclusion vulnerability in SGallery 1.01 allows local and possibly remote attackers to execute arbitrary PHP code by modifying the DOCUMENT_ROOT parameter to reference a URL on a remote web server that contains (1) config.php or (2) sql_layer.php.  Assigned (20050213)  None (candidate not yet proposed)    View
11583  CVE-2005-0377  Candidate  SQL injection vulnerability in imageview.php for SGallery 1.01 allows remote attackers to execute arbitrary SQL commands via the (1) idalbum or (2) idimage parameters.  Assigned (20050213)  None (candidate not yet proposed)    View

Page 1145 of 20943, showing 5 records out of 104715 total, starting on record 5721, ending on 5725

Actions