CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11729 | CVE-2005-0523 | Candidate | Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the Location header. | Assigned (20050223) | None (candidate not yet proposed) | View | |
11730 | CVE-2005-0524 | Candidate | The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a -8 size value. | Assigned (20050223) | None (candidate not yet proposed) | View | |
11731 | CVE-2005-0525 | Candidate | The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a JPEG image with an invalid marker value, which causes a negative length value to be passed to php_stream_seek. | Assigned (20050223) | None (candidate not yet proposed) | View | |
11732 | CVE-2005-0526 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in PBLang 4.65 allow remote attackers to inject arbitrary web script or HTML via (1) the search string to search.php, (2) the subject of a PM, which is processed by pm.php, or (3) the body of a PM, which is processed by pmpshow.php. | Assigned (20050223) | None (candidate not yet proposed) | View | |
7910 | CVE-2003-1086 | Candidate | PHP remote file inclusion vulnerability in pm/lib.inc.php in pMachine Free and pMachine Pro 2.2 and 2.2.1 allows remote attackers to execute arbitrary PHP code by modifying the pm_path parameter to reference a URL on a remote web server that contains the code. | Assigned (20050223) | None (candidate not yet proposed) | View |
Page 1230 of 20943, showing 5 records out of 104715 total, starting on record 6146, ending on 6150