CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15343  CVE-2005-4139  Candidate  Multiple SQL injection vulnerabilities in ThWboard before 3 Beta 2.84 allow remote attackers to execute arbitrary SQL commands via the (1) year parameter in calendar.php, (2) user parameter array in v_profile.php, and (3) the userid parameter in misc.php.  Assigned (20051209)  None (candidate not yet proposed)    View
15344  CVE-2005-4140  Candidate  SQL injection vulnerability in admin/login/index.php in Website Baker 2.6.0 allows remote attackers to execute arbitrary SQL commands via the username parameter, as used by the user field.  Assigned (20051209)  None (candidate not yet proposed)    View
15345  CVE-2005-4141  Candidate  Multiple SQL injection vulnerabilities in ASPMForum allow remote attackers to execute arbitrary SQL commands via the (1) harf parameter in kullanicilistesi.asp and (2) baslik parameter in forum.asp.  Assigned (20051209)  None (candidate not yet proposed)    View
15272  CVE-2005-4068  Candidate  Unspecified "absolute path vulnerability" in umountall in IBM AIX 5.1 through 5.3 allows local users to cause unknown impact via unknown vectors.  Assigned (20051208)  None (candidate not yet proposed)    View
15273  CVE-2005-4069  Candidate  SunnComm MediaMax DRM 5.0.21.0, as used by Sony BMG, assigns insecure Everyone/Full Control permissions to the "SunnComm Shared" directory, which allows local users to gain privileges by modifying programs installed in that directory, such as MMX.exe.  Assigned (20051208)  None (candidate not yet proposed)    View

Page 18601 of 20943, showing 5 records out of 104715 total, starting on record 93001, ending on 93005

Actions