CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11729  CVE-2005-0523  Candidate  Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the Location header.  Assigned (20050223)  None (candidate not yet proposed)    View
11730  CVE-2005-0524  Candidate  The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a -8 size value.  Assigned (20050223)  None (candidate not yet proposed)    View
11731  CVE-2005-0525  Candidate  The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a JPEG image with an invalid marker value, which causes a negative length value to be passed to php_stream_seek.  Assigned (20050223)  None (candidate not yet proposed)    View
11732  CVE-2005-0526  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PBLang 4.65 allow remote attackers to inject arbitrary web script or HTML via (1) the search string to search.php, (2) the subject of a PM, which is processed by pm.php, or (3) the body of a PM, which is processed by pmpshow.php.  Assigned (20050223)  None (candidate not yet proposed)    View
7910  CVE-2003-1086  Candidate  PHP remote file inclusion vulnerability in pm/lib.inc.php in pMachine Free and pMachine Pro 2.2 and 2.2.1 allows remote attackers to execute arbitrary PHP code by modifying the pm_path parameter to reference a URL on a remote web server that contains the code.  Assigned (20050223)  None (candidate not yet proposed)    View

Page 1230 of 20943, showing 5 records out of 104715 total, starting on record 6146, ending on 6150

Actions