CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12823 | CVE-2005-1617 | Candidate | Willings WebCam and WebCam Lite 2.8 and earlier stores the password in memory in plaintext, which allows local users to gain sensitive information. | Assigned (20050516) | None (candidate not yet proposed) | View | |
12824 | CVE-2005-1618 | Candidate | The YMSGR URL handler in Yahoo! Messenger 5.x through 6.0 allows remote attackers to cause a denial of service (disconnect) via a room login or a room join request packet with a third : (colon) and an & (ampersand), which causes Messenger to send a corrupted packet to the server, which triggers a disconnect from the server. | Assigned (20050516) | None (candidate not yet proposed) | View | |
12825 | CVE-2005-1619 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in (1) start_page.css.php3 (aka start-page.css.php3) or (2) style.css.php3 in PHPMyChat 0.14.5 allow remote attackers to inject arbitrary web script or HTML commands via the FontName parameter. NOTE: it was later reported that 0.14.5 is also affected. | Assigned (20050516) | None (candidate not yet proposed) | View | |
12826 | CVE-2005-1620 | Candidate | Cross-site scripting (XSS) vulnerability in Skull-Splitter Guestbook 1.0, 2.0 and 2.2 allows remote attackers to inject arbitrary web script or HTML via the (1) title or (2) content of a message. | Assigned (20050516) | None (candidate not yet proposed) | View | |
12827 | CVE-2005-1621 | Candidate | Directory traversal vulnerability in the pnModFunc function in pnMod.php for PostNuke 0.750 through 0.760rc4 allows remote attackers to read arbitrary files via a .. (dot dot) in the func parameter to index.php. | Assigned (20050516) | None (candidate not yet proposed) | View |
Page 1575 of 20943, showing 5 records out of 104715 total, starting on record 7871, ending on 7875