CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12153 | CVE-2005-0947 | Candidate | Directory traversal vulnerability in auxpage.php in phpCoin 1.2.1b and earlier allows remote attackers to read and execute arbitrary files via a .. (dot dot) in the page parameter. | Assigned (20050403) | None (candidate not yet proposed) | View | |
12154 | CVE-2005-0948 | Candidate | SQL injection vulnerability in ad_click.asp for PortalApp allows remote attackers to execute arbitrary SQL commands via the banner_id parameter. | Assigned (20050403) | None (candidate not yet proposed) | View | |
12155 | CVE-2005-0949 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in content.asp in Iatek PortalApp allow remote attackers to inject arbitrary web script or HTML via the (1) contenttype or (2) keywords parameter. | Assigned (20050403) | None (candidate not yet proposed) | View | |
12156 | CVE-2005-0950 | Candidate | Directory traversal vulnerability in FastStone 4in1 Browser 1.2 allows remote attackers to read arbitrary files via a (1) ... (triple dot) or (2) .. (dot dot backslash) in the URL. | Assigned (20050403) | None (candidate not yet proposed) | View | |
12157 | CVE-2005-0951 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: this candidate was created as a result of an analysis error for a researcher advisory for an issue that already existed. It stated an incorrect parameter, which was not part of the vulnerability at all. Notes: CVE users should not reference this candidate at all. | Assigned (20050403) | None (candidate not yet proposed) | View |
Page 1355 of 20943, showing 5 records out of 104715 total, starting on record 6771, ending on 6775