CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12774  CVE-2005-1568  Candidate  topic.php in DirectTopics 2.1 and 2.2 allows remote attackers to obtain sensitive information via an invalid topic parameter, which reveals the path in an error message.  Assigned (20050514)  None (candidate not yet proposed)    View
12775  CVE-2005-1569  Candidate  Cross-site scripting (XSS) vulnerability in DirectTopics 2.1 and 2.2 allows remote attackers to inject arbitrary web script via a javascript: URL in (1) a thread or (2) an IMG tag.  Assigned (20050514)  None (candidate not yet proposed)    View
12776  CVE-2005-1570  Candidate  forum.asp in bttlxeForum 2.0 allows remote attackers to obtain full path information via a certain hex-encoded argument to the page parameter, possibly due to a SQL injection vulnerability.  Assigned (20050514)  None (candidate not yet proposed)    View
12777  CVE-2005-1571  Candidate  Multiple directory traversal vulnerabilities in ShowOff! 1.5.4 allow remote attackers to read arbitrary files via ".." sequences in arguments to the (1) ShowAlbum, (2) ShowVideo, or (3) ShowGraphic scripts.  Assigned (20050514)  None (candidate not yet proposed)    View
12778  CVE-2005-1572  Candidate  ShowOff! 1.5.4 allows remote attackers to cause a denial of service (server crash) via a malformed request to port 8083.  Assigned (20050514)  None (candidate not yet proposed)    View

Page 1566 of 20943, showing 5 records out of 104715 total, starting on record 7826, ending on 7830

Actions