CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12045 | CVE-2005-0839 | Candidate | Linux kernel 2.6 before 2.6.11 does not restrict access to the N_MOUSE line discipline for a TTY, which allows local users to gain privileges by injecting mouse or keyboard events into other user sessions. | Assigned (20050323) | None (candidate not yet proposed) | View | |
12046 | CVE-2005-0840 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-0706. Reason: This candidate is a duplicate of CVE-2005-0706. Notes: All CVE users should reference CVE-2005-0706 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. | Assigned (20050323) | None (candidate not yet proposed) | View | |
12047 | CVE-2005-0841 | Candidate | SQL injection vulnerability in (1) people.php, (2) track.php, (3) edit.php, (4) document.php, (5) census.php, (6) passthru.php and possibly other php files in phpMyFamily 1.4.0 allows remote attackers to execute arbitrary SQL commands, as demonstrated via (1) the person parameter to people.php or (2) the Login field. | Assigned (20050324) | None (candidate not yet proposed) | View | |
12048 | CVE-2005-0842 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Kayako eSupport 2.3 allows remote attackers to inject arbitrary web script or HTML via the (1) _i or (2) _c parameter. | Assigned (20050324) | None (candidate not yet proposed) | View | |
12049 | CVE-2005-0843 | Candidate | CRLF injection vulnerability in search.php in Phorum 5.0.14a allows remote attackers to perform HTTP Response Splitting attacks via the body parameter, which is included in the resulting Location header. | Assigned (20050324) | None (candidate not yet proposed) | View |
Page 1321 of 20943, showing 5 records out of 104715 total, starting on record 6601, ending on 6605