CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12208 | CVE-2005-1002 | Candidate | logwebftbs2000.exe in Logics Software File Transfer (LOG-FT) allows remote attackers to read arbitrary files via modified (1) VAR_FT_LANG and (2) VAR_FT_TMPL parameters. | Assigned (20050407) | None (candidate not yet proposed) | View | |
12209 | CVE-2005-1003 | Candidate | Directory traversal vulnerability in index.php for ProfitCode PayProCart 3.0 allows remote attackers to include arbitrary PHP files via .. (dot dot) sequences in the modID parameter. | Assigned (20050407) | None (candidate not yet proposed) | View | |
12210 | CVE-2005-1004 | Candidate | Cross-site scripting (XSS) vulnerability in usrdetails.php in ProfitCode PayProCart 3.0 allows remote attackers to inject arbitrary web script or HTML via the sgnuptype parameter. | Assigned (20050407) | None (candidate not yet proposed) | View | |
12211 | CVE-2005-1005 | Candidate | ProfitCode PayProCart 3.0 allows remote attackers to bypass authentication and gain administrative privileges to the admin control panel, as demonstrated via a direct request to adminshop/index.php with hex-encoded .. sequences in the ftoedit parameter. | Assigned (20050407) | None (candidate not yet proposed) | View | |
12212 | CVE-2005-1006 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in SonicWALL SOHO 5.1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the URL or (2) the user login name, which is not filtered when the administrator views the log file. | Assigned (20050407) | None (candidate not yet proposed) | View |
Page 1366 of 20943, showing 5 records out of 104715 total, starting on record 6826, ending on 6830