CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12431  CVE-2005-1225  Candidate  SQL injection vulnerability in Coppermine Photo Gallery 1.3.2 allows remote attackers to execute arbitrary SQL commands via the favs parameter to (1) init.inc.php or (2) zipdownload.php.  Assigned (20050422)  None (candidate not yet proposed)    View
12432  CVE-2005-1226  Candidate  Coppermine Photo Gallery 1.3.2 stores passwords in plaintext, which allows remote attackers to obtain sensitive information.  Assigned (20050422)  None (candidate not yet proposed)    View
12433  CVE-2005-1227  Candidate  Cross-site scripting (XSS) vulnerability in PHProjekt 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the chatroom text submission form.  Assigned (20050422)  None (candidate not yet proposed)    View
12434  CVE-2005-1228  Candidate  Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file.  Assigned (20050422)  None (candidate not yet proposed)    View
12435  CVE-2005-1229  Candidate  Directory traversal vulnerability in cpio 2.6 and earlier allows remote attackers to write to arbitrary directories via a .. (dot dot) in a cpio file.  Assigned (20050422)  None (candidate not yet proposed)    View

Page 1424 of 20943, showing 5 records out of 104715 total, starting on record 7116, ending on 7120

Actions