CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12614  CVE-2005-1408  Candidate  Apple Keynote 2.0 and 2.0.1 allows remote attackers to read arbitrary files via the keynote: URI handler in a crafted Keynote presentation.  Assigned (20050503)  None (candidate not yet proposed)    View
12615  CVE-2005-1409  Candidate  PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unprivileged users to call those functions with malicious values, with unknown impact, aka the "Character conversion vulnerability."  Assigned (20050503)  None (candidate not yet proposed)    View
12616  CVE-2005-1410  Candidate  The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spell_init, and (5) syn_init functions as "internal" even when they do not take an internal argument, which allows attackers to cause a denial of service (application crash) and possibly have other impacts via SQL commands that call other functions that accept internal arguments.  Assigned (20050503)  None (candidate not yet proposed)    View
12617  CVE-2005-1411  Candidate  Cybration ICUII 7.0 stores passwords in plaintext in the world-readable icuii.ini file, which allows local users to gain privileges.  Assigned (20050503)  None (candidate not yet proposed)    View
12618  CVE-2005-1412  Candidate  SQL injection vulnerability in verify.asp for Ecomm Professional Guestbook 3.x allows remote attackers to execute arbitrary SQL commands via the AdminPWD parameter.  Assigned (20050503)  None (candidate not yet proposed)    View

Page 1461 of 20943, showing 5 records out of 104715 total, starting on record 7301, ending on 7305

Actions