CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13385  CVE-2005-2179  Candidate  PHP remote file inclusion vulnerability in BlogModel.php in Jaws 0.5.2 and earlier allows remote attackers to execute arbitrary PHP code via the path parameter.  Assigned (20050710)  None (candidate not yet proposed)    View
13386  CVE-2005-2180  Candidate  gen-index in GNATS 4.0, 4.1.0, and possibly earlier versions, when installed setuid, does not properly check files passed to the -o argument and opens the file with write access, which allows local users to overwrite arbitrary files.  Assigned (20050710)  None (candidate not yet proposed)    View
13387  CVE-2005-2181  Candidate  Cisco 7940/7960 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, which allows remote attackers to spoof messages such as the "Messages waiting" message.  Assigned (20050710)  None (candidate not yet proposed)    View
13388  CVE-2005-2182  Candidate  Grandstream BudgeTone (BT) 100 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, which allows remote attackers to spoof messages such as the "Messages waiting" message.  Assigned (20050710)  None (candidate not yet proposed)    View
13389  CVE-2005-2183  Candidate  class.xmail.php in PhpXmail 0.7 through 1.1 does not properly handle large passwords, which prevents an error message from being returned and allows remote attackers to bypass authentication and gain unauthorized access.  Assigned (20050710)  None (candidate not yet proposed)    View

Page 1779 of 20943, showing 5 records out of 104715 total, starting on record 8891, ending on 8895

Actions