CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13279  CVE-2005-2073  Candidate  Unknown vulnerability in IBM DB2 8.1.4 through 8.1.9 and 8.2.0 through 8.2.2 allows local users with SELECT privileges to conduct unauthorized activities and insert, update or delete table contents.  Assigned (20050629)  None (candidate not yet proposed)    View
6368  CVE-2002-1986  Candidate  Perception LiteServe 2.0 through 2.0.1 allows remote attackers to obtain the source code of CGI scripts via an HTTP request with a trailing dot (".").  Assigned (20050629)  None (candidate not yet proposed)    View
13280  CVE-2005-2074  Candidate  Cross-site scripting (XSS) vulnerability in PHP-Fusion 6.0.105 allows remote attackers to inject arbitrary web script or HTML via a news or article post, possibly involving the (1) news_body, (2) article_description, or (3) article_body parameters to submit.php.  Assigned (20050629)  None (candidate not yet proposed)    View
13281  CVE-2005-2075  Candidate  PHP-Fusion 5.0 and 6.0 stores the database file with a predictable filename under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to the filename in the administration/db_backups directory in PHP-Fusion 6.0 or the fusion_admin/db_backups directory in 5.0.  Assigned (20050629)  None (candidate not yet proposed)    View
13282  CVE-2005-2076  Candidate  HP Version Control Repository Manager (VCRM) before 2.1.1.730 does not properly handle the "@" character in a proxy password, which could allow attackers with physical access to obtain portions of the password when it is displayed to the screen.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 1754 of 20943, showing 5 records out of 104715 total, starting on record 8766, ending on 8770

Actions