CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11930  CVE-2005-0724  Candidate  paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via (1) an invalid str parameter to pafiledb.php, or a direct request to (2) viewall.php, (3) stats.php, (4) search.php, (5) rate.php, (6) main.php, (7) license.php, (8) category.php, (9) download.php, (10) file.php, (11) email.php, or (12) admin.php, which reveals the path in a PHP error message.  Assigned (20050312)  None (candidate not yet proposed)    View
11931  CVE-2005-0725  Candidate  SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows remote attackers to execute arbitrary SQL commands via the articleid parameter to article.php.  Assigned (20050312)  None (candidate not yet proposed)    View
11932  CVE-2005-0726  Candidate  SQL injection vulnerability in editpost.php in UBB.threads 6.0 allows remote attackers to execute arbitrary SQL commands via the Number parameter.  Assigned (20050312)  None (candidate not yet proposed)    View
11933  CVE-2005-0727  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-0735. Reason: This candidate is a duplicate of CVE-2005-0735. Notes: All CVE users should reference CVE-2005-0727 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050312)  None (candidate not yet proposed)    View
11934  CVE-2005-0728  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-0736. Reason: This candidate is a duplicate of CVE-2005-0736. Notes: All CVE users should reference CVE-2005-0736 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050312)  None (candidate not yet proposed)    View

Page 1293 of 20943, showing 5 records out of 104715 total, starting on record 6461, ending on 6465

Actions