CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12619  CVE-2005-1413  Candidate  Multiple SQL injection vulnerabilities in enVivo!CMS allow remote attackers to execute arbitrary SQL commands and gain privileges via the (1) username or (2) password parameters to admin_login.asp, or the (3) searchstring and possibly (4) ID parameters to default.asp.  Assigned (20050503)  None (candidate not yet proposed)    View
12620  CVE-2005-1414  Candidate  ExoticSoft FilePocket 1.2 stores sensitive proxy information, including proxy passwords, in plaintext in the registry, which allows local users to gain privileges.  Assigned (20050503)  None (candidate not yet proposed)    View
12621  CVE-2005-1415  Candidate  Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a long FTP command.  Assigned (20050503)  None (candidate not yet proposed)    View
12622  CVE-2005-1416  Candidate  Directory traversal vulnerability in 04WebServer 1.81 allows remote attackers to read files outside of the web root but within the installation folder.  Assigned (20050503)  None (candidate not yet proposed)    View
12623  CVE-2005-1417  Candidate  Multiple SQL injection vulnerabilities in MaxWebPortal 2.x, 1.35, and other versions allow remote attackers to execute arbitrary SQL commands via (1) article_popular.asp, (2) arguments to dl_popular.asp, (3) arguments to links_popular.asp, (4) arguments to pic_popular.asp, (5) article_rate.asp, (6) dl_rate.asp, (7) links_rate.asp, (8) pic_rates.asp, (9) article_toprated.asp, (10) dl_toprated.asp, (11) links_toprated.asp, (12) arguments to pic_toprated.asp, or (13) the TOPIC_ID or Forum_ID parameters to custom_link.asp.  Assigned (20050503)  None (candidate not yet proposed)    View

Page 1462 of 20943, showing 5 records out of 104715 total, starting on record 7306, ending on 7310

Actions