CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15268  CVE-2005-4064  Candidate  Multiple SQL injection vulnerabilities in A-FAQ 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) faqid parameter to faqDspItem.asp and (2) catcode parameter to faqDsp.asp.  Assigned (20051207)  None (candidate not yet proposed)    View
15269  CVE-2005-4065  Candidate  SQL injection vulnerability in the search module in Edgewall Trac before 0.9.2 allows remote attackers to execute arbitrary SQL commands via unknown vectors.  Assigned (20051207)  None (candidate not yet proposed)    View
15270  CVE-2005-4066  Candidate  Total Commander 6.53 uses weak encryption to store FTP usernames and passwords in WCX_FTP.INI, which allows local users to decrypt the passwords and gain access to FTP servers, as possibly demonstrated by the W32.Gudeb worm.  Assigned (20051207)  None (candidate not yet proposed)    View
15271  CVE-2005-4067  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4031. Reason: This candidate is a reservation duplicate of CVE-2005-4031. Notes: All CVE users should reference CVE-2005-4031 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20051207)  None (candidate not yet proposed)    View
15234  CVE-2005-4030  Candidate  SQL injection vulnerability in Quicksilver Forums before 1.5.1 allows remote attackers to execute arbitrary SQL commands via the HTTP_USER_AGENT header.  Assigned (20051206)  None (candidate not yet proposed)    View

Page 18611 of 20943, showing 5 records out of 104715 total, starting on record 93051, ending on 93055

Actions