CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11835  CVE-2005-0629  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in profile.php in 427BB 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) user or (2) Avatar parameters.  Assigned (20050304)  None (candidate not yet proposed)    View
11836  CVE-2005-0630  Candidate  sendpm.php in PBLang 4.63 allows remote authenticated users to read arbitrary files via a full pathname in the orig parameter.  Assigned (20050304)  None (candidate not yet proposed)    View
11837  CVE-2005-0631  Candidate  delpm.php in PBLang 4.63 allows remote authenticated users to delete arbitrary PM files by modifying the "id" and "a" parameters.  Assigned (20050304)  None (candidate not yet proposed)    View
11838  CVE-2005-0632  Candidate  PHP remote file inclusion vulnerability in auth.php in PHPNews 1.2.4 and possibly 1.2.3, allows remote attackers to execute arbitrary PHP code via the path parameter.  Assigned (20050304)  None (candidate not yet proposed)    View
11839  CVE-2005-0633  Candidate  Buffer overflow in Trillian 3.0 and Pro 3.0 allows remote attackers to execute arbitrary code via a crafted PNG image file.  Assigned (20050304)  None (candidate not yet proposed)    View

Page 1262 of 20943, showing 5 records out of 104715 total, starting on record 6306, ending on 6310

Actions