CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12905  CVE-2005-1699  Candidate  Directory traversal vulnerability in pnadminapi.php in the Xanthia module in PostNuke 0.760-RC3 allows remote administrators to read arbitrary files via a .. (dot dot) in the skin parameter.  Assigned (20050524)  None (candidate not yet proposed)    View
12906  CVE-2005-1700  Candidate  SQL injection vulnerability in pnadmin.php in the Xanthia module in PostNuke 0.760-RC3 allows remote administrators to execute arbitrary SQL commands via the riga[0] parameter.  Assigned (20050524)  None (candidate not yet proposed)    View
12907  CVE-2005-1701  Candidate  SQL injection vulnerability in PortailPHP 1.3 allows remote attackers to execute arbitrary SQL commands via the id parameter to the (1) News, (2) File, (3) Liens, or (4) Faq modules.  Assigned (20050524)  None (candidate not yet proposed)    View
12908  CVE-2005-1702  Candidate  Format string vulnerability in Warrior Kings: Battles 1.23 and earlier and Warrior Kings 1.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a nickname.  Assigned (20050524)  None (candidate not yet proposed)    View
12909  CVE-2005-1703  Candidate  Warrior Kings: Battles 1.23 and earlier allows remote attackers to cause a denial of service (server crash) via a partial join packet that triggers a NULL pointer dereference.  Assigned (20050524)  None (candidate not yet proposed)    View

Page 1600 of 20943, showing 5 records out of 104715 total, starting on record 7996, ending on 8000

Actions