CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15299  CVE-2005-4095  Candidate  Directory traversal vulnerability in connector.php in the fckeditor2rc2 addon in DoceboLMS 2.0.4 allows remote attackers to list arbitrary files and directories via ".." sequences in the Type parameter in a GetFoldersAndFiles command.  Assigned (20051208)  None (candidate not yet proposed)    View
15249  CVE-2005-4045  Candidate  Unspecified vulnerability in System Communications Services 6 Delegated Administrator 2005Q1 in Sun Java System Messaging Server 2005Q1 allows remote attackers to obtain the Top-Level Administrator (TLA) default password via unknown vectors, possibly involving configure_toplevel_admin.ldif.  Assigned (20051207)  None (candidate not yet proposed)    View
15250  CVE-2005-4046  Candidate  Unspecified vulnerability in Reverse SSL Proxy Plug-in for Sun Java System Application Server Standard Edition 7 2004Q2, Application Server Enterprise Edition 8.1 2005Q1, and Sun ONE Application Server 7 Standard Edition, as used in multiple web servers, allows remote attackers to conduct man-in-the-middle (MITM) attacks and "compromise data privacy."  Assigned (20051207)  None (candidate not yet proposed)    View
15251  CVE-2005-4047  Candidate  Cross-site scripting (XSS) vulnerability in kb.asp in IISWorks ASPKnowledgeBase 2.0 allows remote attackers to inject arbitrary web script or HTML via the a parameter.  Assigned (20051207)  None (candidate not yet proposed)    View
15252  CVE-2005-4048  Candidate  Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.  Assigned (20051207)  None (candidate not yet proposed)    View

Page 18607 of 20943, showing 5 records out of 104715 total, starting on record 93031, ending on 93035

Actions