CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11678 | CVE-2005-0472 | Candidate | Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ. | Assigned (20050219) | None (candidate not yet proposed) | View | |
11679 | CVE-2005-0473 | Candidate | The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that causes "an invalid memory access," a different vulnerability than CVE-2005-0208. | Assigned (20050219) | None (candidate not yet proposed) | View | |
11680 | CVE-2005-0474 | Candidate | SQL injection vulnerability in the user_valid_crypt function in user.php in WebCalendar 0.9.45 allows remote attackers to execute arbitrary SQL commands via an encoded webcalendar_session cookie. | Assigned (20050219) | None (candidate not yet proposed) | View | |
11681 | CVE-2005-0475 | Candidate | SQL injection vulnerability in paFAQ Beta4, and possibly other versions, allows remote attackers to execute arbitrary SQL code via the (1) offset, (2) limit, (3) order, or (4) orderby parameter to question.php, (5) offset parameter to answer.php, (6) search_item parameter to search.php, (7) cat_id, (8) cid, or (9) id parameter to comment.php. | Assigned (20050219) | None (candidate not yet proposed) | View | |
11682 | CVE-2005-0476 | Candidate | Cross-site scripting (XSS) vulnerability in hpm_guestbook.cgi allows remote attackers to inject arbitrary web script or HTML by posting a message. | Assigned (20050219) | None (candidate not yet proposed) | View |
Page 1188 of 20943, showing 5 records out of 104715 total, starting on record 5936, ending on 5940