CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13078  CVE-2005-1872  Candidate  Buffer overflow in the administrative console in IBM WebSphere Application Server 5.x, when the global security option is enabled, allows remote attackers to execute arbitrary code.  Assigned (20050608)  None (candidate not yet proposed)    View
13079  CVE-2005-1873  Candidate  Multiple buffer overflows in Crob FTP 3.6.1, and possibly earlier versions, allow remote attackers to execute arbitrary code via (1) an FTP command with a large string followed by the RMD command with a long string or (2) a globbing ("*") character followed by a long string.  Assigned (20050608)  None (candidate not yet proposed)    View
13080  CVE-2005-1874  Candidate  Directory traversal vulnerability in Dzip before 2.9 allows remote attackers to create arbitrary files via a filename containing a .. (dot dot) in a .dz archive.  Assigned (20050608)  None (candidate not yet proposed)    View
13081  CVE-2005-1875  Candidate  Multiple SQL injection vulnerabilities in list.php in Exhibit Engine (EE) 1.22 allow remote attackers to execute arbitrary SQL commands via the (1) search_row, (2) sort_row, (3) order or (4) perpage parameter.  Assigned (20050608)  None (candidate not yet proposed)    View
13082  CVE-2005-1876  Candidate  Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with administrative privileges to execute arbitrary PHP code via certain inputs that are injected into a template (.tpl) file.  Assigned (20050608)  None (candidate not yet proposed)    View

Page 1644 of 20943, showing 5 records out of 104715 total, starting on record 8216, ending on 8220

Actions