CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11820  CVE-2005-0614  Candidate  sessions.php in phpBB 2.0.12 and earlier allows remote attackers to gain administrator privileges via the autologinid value in a cookie.  Assigned (20050302)  None (candidate not yet proposed)    View
11821  CVE-2005-0615  Candidate  Multiple SQL injection vulnerabilities in (1) index.php, (2) modules.php, or (3) admin.php in PostNuke 0.760-RC2 allow remote attackers to execute arbitrary SQL code via the catid parameter.  Assigned (20050302)  None (candidate not yet proposed)    View
11822  CVE-2005-0616  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Download module for PostNuke 0.750 and 0.760-RC2 allow remote attackers to inject arbitrary web script or HTML via the (1) Program name, (2) File link, (3) Author name (4) Author e-mail address, (5) File size, (6) Version, or (7) Home page variables.  Assigned (20050302)  None (candidate not yet proposed)    View
11823  CVE-2005-0617  Candidate  SQL injection vulnerability in dl-search.php in PostNuke 0.750 and 0.760-RC2 allows remote attackers to execute arbitrary SQL commands via the show parameter.  Assigned (20050302)  None (candidate not yet proposed)    View
11824  CVE-2005-0618  Candidate  The SMTP binding function in Symantec Firewall/VPN Appliance 200/200R firmware after 1.5Z and before 1.68, Gateway Security 360/360R and 460/460R firmware before vuild 858, and Nexland Pro800turbo, when configured for load balancing between two WANs, might send SMTP traffic to a trusted network through an untrusted network.  Assigned (20050302)  None (candidate not yet proposed)    View

Page 1259 of 20943, showing 5 records out of 104715 total, starting on record 6291, ending on 6295

Actions