CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12353  CVE-2005-1147  Candidate  calendar.pl in CalendarScript 3.20 allows remote attackers to obtain sensitive information via invalid (1) calendar or (2) template parameters, which leaks the full pathname and debug information.  Assigned (20050416)  None (candidate not yet proposed)    View
12354  CVE-2005-1148  Candidate  calendar.pl in CalendarScript 3.21 allows remote attackers to obtain sensitive information via invalid (1) year or (2) month parameters, which leaks the full pathname and debug information.  Assigned (20050416)  None (candidate not yet proposed)    View
12355  CVE-2005-1149  Candidate  SQL injection vulnerability in admin/login.asp in aspclick.it ACNews 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.  Assigned (20050416)  None (candidate not yet proposed)    View
12356  CVE-2005-1150  Candidate  Unknown vulnerability in Sun Java System Web Server 6.0 SP7 and earlier, when running on Windows systems, allows attackers to cause a denial of service (hang).  Assigned (20050416)  None (candidate not yet proposed)    View
12357  CVE-2005-1151  Candidate  qpopper 4.0.5 and earlier does not properly drop privileges before processing certain user-supplied files, which allows local users to overwrite or create arbitrary files as root.  Assigned (20050418)  None (candidate not yet proposed)    View

Page 1395 of 20943, showing 5 records out of 104715 total, starting on record 6971, ending on 6975

Actions