CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12004 | CVE-2005-0798 | Candidate | Novell iChain Mini FTP Server 2.3, and possibly earlier versions, does not limit the number of incorrect logins, which makes it easier for remote attackers to conduct brute force login attacks. | Assigned (20050320) | None (candidate not yet proposed) | View | |
12005 | CVE-2005-0799 | Candidate | MySQL 4.1.9, and possibly earlier versions, allows remote attackers with certain privileges to cause a denial of service (application crash) via a use command followed by an MS-DOS device name such as (1) LPT1 or (2) PRN. | Assigned (20050320) | None (candidate not yet proposed) | View | |
12006 | CVE-2005-0800 | Candidate | PHP remote file inclusion vulnerability in install.php in mcNews 1.3 and earlier allows remote attackers to execute arbitrary PHP code by modifying the l parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2005-0720. | Assigned (20050320) | None (candidate not yet proposed) | View | |
12007 | CVE-2005-0801 | Candidate | Directory traversal vulnerability in includer.cgi in The Includer allows remote attackers to read arbitrary files via (1) a .. (dot dot) or (2) a full pathname in the URL. | Assigned (20050320) | None (candidate not yet proposed) | View | |
12008 | CVE-2005-0802 | Candidate | Cross-site scripting (XSS) vulnerability in search.asp in ACS Blog 0.8 through 1.1b allows remote attackers to execute arbitrary web script or HTML via the search parameter. | Assigned (20050320) | None (candidate not yet proposed) | View |
Page 1312 of 20943, showing 5 records out of 104715 total, starting on record 6556, ending on 6560