CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13043  CVE-2005-1837  Candidate  Fortinet firewall running FortiOS 2.x contains a hardcoded username with the password set to the serial number, which allows local users with console access to gain privileges.  Assigned (20050602)  None (candidate not yet proposed)    View
13044  CVE-2005-1838  Candidate  Multiple cross-site scripting vulnerabilities in castnewPost.asp in Liberum Help Desk 0.97.3 allow remote attackers to inject arbitrary web script or HTML via the (1) Email, (2) Title, or (3) Description fields.  Assigned (20050602)  None (candidate not yet proposed)    View
13045  CVE-2005-1839  Candidate  Multiple SQL injection vulnerabilities in Doug Luxem Liberum Help Desk 0.97.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) view.asp or (2) print.asp or (3) edit parameter to register.asp.  Assigned (20050602)  None (candidate not yet proposed)    View
13046  CVE-2005-1840  Candidate  Directory traversal vulnerability in class.layout_phpcms.php in phpCMS 1.2.x before 1.2.1pl2 allows remote attackers to read or include arbitrary files, as demonstrated using a .. (dot dot) in the language parameter to parser.php.  Assigned (20050602)  None (candidate not yet proposed)    View
13047  CVE-2005-1841  Candidate  The control for Adobe Reader 5.0.9 and 5.0.10 on Linux, Solaris, HP-UX, and AIX creates temporary files with the permissions as specified in a user"s umask, which could allow local users to read PDF documents of that user if the umask allows it.  Assigned (20050603)  None (candidate not yet proposed)    View

Page 1637 of 20943, showing 5 records out of 104715 total, starting on record 8181, ending on 8185

Actions