CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12940  CVE-2005-1734  Candidate  Multiple SQL injection vulnerabilities in PROMS before 0.11 allow remote attackers to execute arbitrary SQL commands via unknown vectors.  Assigned (20050524)  None (candidate not yet proposed)    View
12941  CVE-2005-1735  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PROMS before 0.11 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20050524)  None (candidate not yet proposed)    View
12942  CVE-2005-1736  Candidate  PROMS 0.11 does not properly handle "certain combinations of rights," which gives more rights to users than intended.  Assigned (20050524)  None (candidate not yet proposed)    View
12943  CVE-2005-1737  Candidate  Multiple unknown vulnerabilities in PROMS 0.11 allow "non-authorized users" to (1) view or modify the project member list or (2) modify the todos list.  Assigned (20050524)  None (candidate not yet proposed)    View
12944  CVE-2005-1738  Candidate  Format string vulnerability in the logPrintBadfile function in delbadfiles.c Iron Bars SHell (ibsh) before 0.3d allows users to "access files outside the home directory" and possibly execute arbitrary code via certain inputs that are not properly handled in a syslog call.  Assigned (20050524)  None (candidate not yet proposed)    View

Page 1607 of 20943, showing 5 records out of 104715 total, starting on record 8031, ending on 8035

Actions