CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12431 | CVE-2005-1225 | Candidate | SQL injection vulnerability in Coppermine Photo Gallery 1.3.2 allows remote attackers to execute arbitrary SQL commands via the favs parameter to (1) init.inc.php or (2) zipdownload.php. | Assigned (20050422) | None (candidate not yet proposed) | View | |
12432 | CVE-2005-1226 | Candidate | Coppermine Photo Gallery 1.3.2 stores passwords in plaintext, which allows remote attackers to obtain sensitive information. | Assigned (20050422) | None (candidate not yet proposed) | View | |
12433 | CVE-2005-1227 | Candidate | Cross-site scripting (XSS) vulnerability in PHProjekt 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the chatroom text submission form. | Assigned (20050422) | None (candidate not yet proposed) | View | |
12434 | CVE-2005-1228 | Candidate | Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file. | Assigned (20050422) | None (candidate not yet proposed) | View | |
12435 | CVE-2005-1229 | Candidate | Directory traversal vulnerability in cpio 2.6 and earlier allows remote attackers to write to arbitrary directories via a .. (dot dot) in a cpio file. | Assigned (20050422) | None (candidate not yet proposed) | View |
Page 1424 of 20943, showing 5 records out of 104715 total, starting on record 7116, ending on 7120