CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12709  CVE-2005-1503  Candidate  Multiple SQL injection vulnerabilities in MidiCart PHP Shopping Cart allow remote attackers to execute arbitrary SQL commands via the (1) searchstring parameter to search_list.php, the (2) maingroup or (3) secondgroup parameters to item_list.php, or (4) code_no parameter to item_show.php.  Assigned (20050511)  None (candidate not yet proposed)    View
12710  CVE-2005-1504  Candidate  GameSpy SDK CD-Key Validation Toolkit, as used by many online games, allows remote attackers to bypass the CD key validation by sending a spoofed disc command, which tells the server the CD key is no longer in use.  Assigned (20050511)  None (candidate not yet proposed)    View
12711  CVE-2005-1505  Candidate  The new account wizard in Mail.app 2.0 in Mac OS 10.4, when configuring an IMAP mail account and checking the credentials, does not prompt the user to use SSL until after the password has already been sent, which causes the password to be sent in plaintext.  Assigned (20050511)  None (candidate not yet proposed)    View
12712  CVE-2005-1506  Candidate  SQL injection vulnerability in out.php in CJ Ultra (CJUltra) Plus 1.0.3 and 1.0.4 allows remote attackers to execute arbitrary SQL commands via the perm parameter.  Assigned (20050511)  None (candidate not yet proposed)    View
12713  CVE-2005-1507  Candidate  Buffer overflow in the Tomcat plugin in 4d WebSTAR 5.33 and 5.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long URL.  Assigned (20050511)  None (candidate not yet proposed)    View

Page 1553 of 20943, showing 5 records out of 104715 total, starting on record 7761, ending on 7765

Actions