CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13170  CVE-2005-1964  Candidate  PHP remote file inclusion vulnerability in utilit.php for Ovidentia Portal allows remote attackers to execute arbitrary PHP code via the babInstallPath parameter.  Assigned (20050614)  None (candidate not yet proposed)    View
13171  CVE-2005-1965  Candidate  PHP remote file inclusion vulnerability in siteframe.php for Broadpool Siteframe allows remote attackers to execute arbitrary code via a URL in the LOCAL_PATH parameter.  Assigned (20050614)  None (candidate not yet proposed)    View
13172  CVE-2005-1966  Candidate  The eTrace_validaddr function in eTrace plugin for e107 portal allows remote attackers to execute arbitrary commands via shell metacharacters after a valid argument to the etrace_host parameter.  Assigned (20050614)  None (candidate not yet proposed)    View
13173  CVE-2005-1967  Candidate  Multiple SQL injection vulnerabilities in ProductCart Ecommerce before 2.7 allow remote attackers to execute arbitrary SQL commands via the (1) idcategory parameter to viewPrd.asp, (2) lid parameter to editCategories.asp, (3) icd parameter to modCustomCardPaymentOpt.asp, or (4) idccr parameter to OptionFieldsEdit.asp.  Assigned (20050614)  None (candidate not yet proposed)    View
13174  CVE-2005-1968  Candidate  Cross-site scripting (XSS) vulnerability in ProductCart Ecommerce before 2.7 allows remote attackers to inject arbitrary web script or HTML via the error parameter to techErr.asp.  Assigned (20050614)  None (candidate not yet proposed)    View

Page 1663 of 20943, showing 5 records out of 104715 total, starting on record 8311, ending on 8315

Actions