CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12649  CVE-2005-1443  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in index.php for Invision Power Board (IPB) 2.0.3 and 2.1 Alpha 2 allows remote attackers to inject arbitrary web script or HTML via the (1) act, (2) Members, (3) calendar, or (4) HID parameters.  Assigned (20050503)  None (candidate not yet proposed)    View
12650  CVE-2005-1444  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in SitePanel 2.6.1 and earlier (SitePanel2) allows remote attackers to inject arbitrary web script or HTML via (1) the v, show, or sec_name parameters to main.php, (2) the inadmin, newsev, or postid parameters to 5.php, or (3) the id parameter to 0.php.  Assigned (20050503)  None (candidate not yet proposed)    View
12651  CVE-2005-1445  Candidate  Multiple directory traversal vulnerabilities in SitePanel 2.6.1 and earlier (SitePanel2) allows remote attackers to (1) delete arbitrary files via the id parameter in a rmattach action to 5.php, or (2) read arbitrary files via the lang parameter to index.php.  Assigned (20050503)  None (candidate not yet proposed)    View
12652  CVE-2005-1446  Candidate  SitePanel 2.6.1 and earlier (SitePanel2) allows remote attackers to upload and execute arbitrary files such as PHP scripts via an attachment to a trouble ticket.  Assigned (20050503)  None (candidate not yet proposed)    View
12653  CVE-2005-1447  Candidate  PHP remote file inclusion vulnerability in main.php in SitePanel 2.6.1 and earlier (SitePanel2) allows remote attackers to execute arbitrary PHP code via the p parameter.  Assigned (20050503)  None (candidate not yet proposed)    View

Page 1468 of 20943, showing 5 records out of 104715 total, starting on record 7336, ending on 7340

Actions