CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12564  CVE-2005-1358  Candidate  text.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.  Assigned (20050428)  None (candidate not yet proposed)    View
12565  CVE-2005-1359  Candidate  Cross-site scripting (XSS) vulnerability in text.cgi script allows remote attackers to inject arbitrary web script or HTML via the argument.  Assigned (20050428)  None (candidate not yet proposed)    View
12566  CVE-2005-1360  Candidate  PHP remote file inclusion vulnerability in error.php in GrayCMS 1.1 allows remote attackers to execute arbitrary PHP code by modifying the path_prefix parameter to reference a URL on a remote web server that contains the code.  Assigned (20050428)  None (candidate not yet proposed)    View
12567  CVE-2005-1361  Candidate  Multiple SQL injection vulnerabilities in MetaCart e-Shop 8.0 allow remote attackers to execute arbitrary SQL commands via the (1) intProdID parameter in product.asp or (2) strCatalog_NAME parameter to productsByCategory.asp.  Assigned (20050428)  None (candidate not yet proposed)    View
12568  CVE-2005-1362  Candidate  Multiple SQL injection vulnerabilities in MetaCart 2.0 for Paypal allow remote attackers to execute arbitrary SQL commands via the (1) intProdID parameter to product.asp, (2) intCatalogID or (3) strSubCatalogID parameters to productsByCategory.asp, (4) chkText, (5) strText, (6) chkPrice, (7) intPrice, (8) chkCat, or (9) strCat parameters to searchAction.asp.  Assigned (20050428)  None (candidate not yet proposed)    View

Page 1451 of 20943, showing 5 records out of 104715 total, starting on record 7251, ending on 7255

Actions