CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13170 | CVE-2005-1964 | Candidate | PHP remote file inclusion vulnerability in utilit.php for Ovidentia Portal allows remote attackers to execute arbitrary PHP code via the babInstallPath parameter. | Assigned (20050614) | None (candidate not yet proposed) | View | |
13171 | CVE-2005-1965 | Candidate | PHP remote file inclusion vulnerability in siteframe.php for Broadpool Siteframe allows remote attackers to execute arbitrary code via a URL in the LOCAL_PATH parameter. | Assigned (20050614) | None (candidate not yet proposed) | View | |
13172 | CVE-2005-1966 | Candidate | The eTrace_validaddr function in eTrace plugin for e107 portal allows remote attackers to execute arbitrary commands via shell metacharacters after a valid argument to the etrace_host parameter. | Assigned (20050614) | None (candidate not yet proposed) | View | |
13173 | CVE-2005-1967 | Candidate | Multiple SQL injection vulnerabilities in ProductCart Ecommerce before 2.7 allow remote attackers to execute arbitrary SQL commands via the (1) idcategory parameter to viewPrd.asp, (2) lid parameter to editCategories.asp, (3) icd parameter to modCustomCardPaymentOpt.asp, or (4) idccr parameter to OptionFieldsEdit.asp. | Assigned (20050614) | None (candidate not yet proposed) | View | |
13174 | CVE-2005-1968 | Candidate | Cross-site scripting (XSS) vulnerability in ProductCart Ecommerce before 2.7 allows remote attackers to inject arbitrary web script or HTML via the error parameter to techErr.asp. | Assigned (20050614) | None (candidate not yet proposed) | View |
Page 1663 of 20943, showing 5 records out of 104715 total, starting on record 8311, ending on 8315