CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13252  CVE-2005-2046  Candidate  Multiple SQL injection vulnerabilities in DUware DUamazon Pro 3.0 and 3.1 allow remote attackers to execute arbitrary SQL commands via the (1) iCat parameter to cat.asp, (2) iSub parameter to sub.asp, (3) iSub parameter to detail.asp, (4) iPro parameter to review.asp, iCat parameter to (5) catEdit.asp, (6) catDelete.asp, (7) productEdit.asp, or (8) productDelete.asp, or (9) iType parameter to type.asp.  Assigned (20050622)  None (candidate not yet proposed)    View
13253  CVE-2005-2047  Candidate  Multiple SQL injection vulnerabilities in DUware DUpaypal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) iCat parameter to cat.asp, (2) iPro parameter to detail.asp, (3) iSub parameter to sub.asp, (4) iCat parameter to catEdit.asp.  Assigned (20050622)  None (candidate not yet proposed)    View
13254  CVE-2005-2048  Candidate  Multiple SQL injection vulnerabilities in DUware DUforum 3.1, and possibly other versions, allow remote attackers to execute arbitrary SQL commands via the (1) iMsg parameter to messages.asp, iFor parameter to (2) post.asp or (3) forums.asp, or (4) id parameter to userEdit.asp. NOTE: vectors 1 and 3 were later reported to affect version 3.0.  Assigned (20050622)  None (candidate not yet proposed)    View
13255  CVE-2005-2049  Candidate  Multiple SQL injection vulnerabilities in DUware DUclassmate 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) iState parameter to default.asp or (2) iPro parameter to edit.asp.  Assigned (20050622)  None (candidate not yet proposed)    View
13256  CVE-2005-2050  Candidate  Unknown vulnerability in Tor before 0.1.0.10 allows remote attackers to read arbitrary memory and possibly key information from the exit server"s process space.  Assigned (20050626)  None (candidate not yet proposed)    View

Page 1708 of 20943, showing 5 records out of 104715 total, starting on record 8536, ending on 8540

Actions