CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13083  CVE-2005-1877  Candidate  Cross-site scripting (XSS) vulnerability in view_ticket.php in Lpanel 1.59 and earlier allows remote attackers to inject arbitrary web script or HTML and obtain sensitive information via the pid parameter.  Assigned (20050608)  None (candidate not yet proposed)    View
13084  CVE-2005-1878  Candidate  GIPTables Firewall 1.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the temp.ip.addresses temporary file.  Assigned (20050608)  None (candidate not yet proposed)    View
13085  CVE-2005-1879  Candidate  LutelWall 0.97 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file created by a system call to wget.  Assigned (20050608)  None (candidate not yet proposed)    View
13086  CVE-2005-1880  Candidate  everybuddy 0.4.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file created by a system call to wget.  Assigned (20050608)  None (candidate not yet proposed)    View
13087  CVE-2005-1881  Candidate  upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code.  Assigned (20050608)  None (candidate not yet proposed)    View

Page 1645 of 20943, showing 5 records out of 104715 total, starting on record 8221, ending on 8225

Actions