CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11720  CVE-2005-0514  Candidate  Cross-site scripting (XSS) vulnerability in Verity Ultraseek before 5.3.3 allows remote attackers to inject arbitrary HTML and web script via search parameters.  Assigned (20050223)  None (candidate not yet proposed)    View
11719  CVE-2005-0513  Candidate  PHP remote file inclusion vulnerability in mail_autocheck.php in the Email This Entry add-on for pMachine Pro 2.4, and possibly other versions including pMachine Free, allows remote attackers to execute arbitrary PHP code by directly requesting mail_autocheck.php and modifying the pm_path parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2003-1086.  Assigned (20050223)  None (candidate not yet proposed)    View
11718  CVE-2005-0512  Candidate  PHP remote file inclusion vulnerability in Tar.php in Mambo 4.5.2 allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2004-1693.  Assigned (20050223)  None (candidate not yet proposed)    View
11717  CVE-2005-0511  Candidate  misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.  Assigned (20050223)  None (candidate not yet proposed)    View
11716  CVE-2005-0510  Candidate  The daemon for fallback-reboot before 0.995 allows attackers to cause a denial of service (daemon exit), possibly related to verbose debug messages when the daemon is not on a tty.  Assigned (20050222)  None (candidate not yet proposed)    View

Page 18600 of 20943, showing 5 records out of 104715 total, starting on record 92996, ending on 93000

Actions