CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11641  CVE-2005-0435  Candidate  awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to read server web logs by setting the loadplugin and pluginmode parameters to rawlog.  Assigned (20050215)  None (candidate not yet proposed)    View
11642  CVE-2005-0436  Candidate  Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of Perl code via the PluginMode parameter.  Assigned (20050215)  None (candidate not yet proposed)    View
11643  CVE-2005-0437  Candidate  Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.  Assigned (20050215)  None (candidate not yet proposed)    View
11644  CVE-2005-0438  Candidate  awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to obtain sensitive information by setting the debug parameter.  Assigned (20050215)  None (candidate not yet proposed)    View
11645  CVE-2005-0439  Candidate  Buffer overflow in the decode_post function in ELOG before 2.5.7 allows remote attackers to execute arbitrary code via attachments with long file names.  Assigned (20050215)  None (candidate not yet proposed)    View

Page 1169 of 20943, showing 5 records out of 104715 total, starting on record 5841, ending on 5845

Actions