CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12400  CVE-2005-1194  Candidate  Stack-based buffer overflow in the ieee_putascii function for nasm 0.98 and earlier allows attackers to execute arbitrary code via a crafted asm file, a different vulnerability than CVE-2004-1287.  Assigned (20050421)  None (candidate not yet proposed)    View
12401  CVE-2005-1195  Candidate  Multiple heap-based buffer overflows in the code used to handle (1) MMS over TCP (MMST) streams or (2) RealMedia RTSP streams in xine-lib before 1.0, and other products that use xine-lib such as MPlayer 1.0pre6 and earlier, allow remote malicious servers to execute arbitrary code.  Assigned (20050421)  None (candidate not yet proposed)    View
12402  CVE-2005-1196  Candidate  SQL injection vulnerability in kb.php in the Knowledge Base module for phpBB allows remote attackers to obtain sensitive information and execute SQL commands via the cat parameter.  Assigned (20050421)  None (candidate not yet proposed)    View
12403  CVE-2005-1197  Candidate  SQL injection vulnerability in the SYS.DBMS_CDC_IPUBLISH.CREATE_SCN_CHANGE_SET procedure in Oracle Database Server 10g allows remote attackers to execute arbitrary SQL commands via the CHANGE_SET_NAME parameter.  Assigned (20050421)  None (candidate not yet proposed)    View
12404  CVE-2005-1198  Candidate  Directory traversal vulnerability in apexec.pl for Anaconda Foundation Directory allows remote attackers to read arbitrary files via hex-encoded null characters (%00) in the middle of ".." sequences in the template parameter.  Assigned (20050421)  None (candidate not yet proposed)    View

Page 1407 of 20943, showing 5 records out of 104715 total, starting on record 7031, ending on 7035

Actions