CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13279 | CVE-2005-2073 | Candidate | Unknown vulnerability in IBM DB2 8.1.4 through 8.1.9 and 8.2.0 through 8.2.2 allows local users with SELECT privileges to conduct unauthorized activities and insert, update or delete table contents. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6368 | CVE-2002-1986 | Candidate | Perception LiteServe 2.0 through 2.0.1 allows remote attackers to obtain the source code of CGI scripts via an HTTP request with a trailing dot ("."). | Assigned (20050629) | None (candidate not yet proposed) | View | |
13280 | CVE-2005-2074 | Candidate | Cross-site scripting (XSS) vulnerability in PHP-Fusion 6.0.105 allows remote attackers to inject arbitrary web script or HTML via a news or article post, possibly involving the (1) news_body, (2) article_description, or (3) article_body parameters to submit.php. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13281 | CVE-2005-2075 | Candidate | PHP-Fusion 5.0 and 6.0 stores the database file with a predictable filename under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to the filename in the administration/db_backups directory in PHP-Fusion 6.0 or the fusion_admin/db_backups directory in 5.0. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13282 | CVE-2005-2076 | Candidate | HP Version Control Repository Manager (VCRM) before 2.1.1.730 does not properly handle the "@" character in a proxy password, which could allow attackers with physical access to obtain portions of the password when it is displayed to the screen. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 1754 of 20943, showing 5 records out of 104715 total, starting on record 8766, ending on 8770