CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12004  CVE-2005-0798  Candidate  Novell iChain Mini FTP Server 2.3, and possibly earlier versions, does not limit the number of incorrect logins, which makes it easier for remote attackers to conduct brute force login attacks.  Assigned (20050320)  None (candidate not yet proposed)    View
12005  CVE-2005-0799  Candidate  MySQL 4.1.9, and possibly earlier versions, allows remote attackers with certain privileges to cause a denial of service (application crash) via a use command followed by an MS-DOS device name such as (1) LPT1 or (2) PRN.  Assigned (20050320)  None (candidate not yet proposed)    View
12006  CVE-2005-0800  Candidate  PHP remote file inclusion vulnerability in install.php in mcNews 1.3 and earlier allows remote attackers to execute arbitrary PHP code by modifying the l parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2005-0720.  Assigned (20050320)  None (candidate not yet proposed)    View
12007  CVE-2005-0801  Candidate  Directory traversal vulnerability in includer.cgi in The Includer allows remote attackers to read arbitrary files via (1) a .. (dot dot) or (2) a full pathname in the URL.  Assigned (20050320)  None (candidate not yet proposed)    View
12008  CVE-2005-0802  Candidate  Cross-site scripting (XSS) vulnerability in search.asp in ACS Blog 0.8 through 1.1b allows remote attackers to execute arbitrary web script or HTML via the search parameter.  Assigned (20050320)  None (candidate not yet proposed)    View

Page 1312 of 20943, showing 5 records out of 104715 total, starting on record 6556, ending on 6560

Actions