CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
15218 | CVE-2005-4014 | Candidate | stat.php in PHP Web Statistik 1.4 allows remote attackers to cause a denial of service (CPU consumption) via a large lastnumber value. | Assigned (20051205) | None (candidate not yet proposed) | View | |
15219 | CVE-2005-4015 | Candidate | PHP Web Statistik 1.4 does not rotate the log database or limit the size of the referer field, which allows remote attackers to fill the log files via a large number of requests, as demonstrated using pixel.php. | Assigned (20051205) | None (candidate not yet proposed) | View | |
15220 | CVE-2005-4016 | Candidate | SQL injection vulnerability in Widget Property 1.1.19 allows remote attackers to execute arbitrary SQL commands via the (1) property_id, (2) zip_code, (3) property_type_id, (4) price, and (5) city_id parameters to property.php. | Assigned (20051205) | None (candidate not yet proposed) | View | |
15221 | CVE-2005-4017 | Candidate | property.php in Widget Property 1.1.19 allows remote attackers to obtain the full server path via an invalid lang value, which leaks the path in the resulting error message. | Assigned (20051205) | None (candidate not yet proposed) | View | |
15222 | CVE-2005-4018 | Candidate | SQL injection vulnerability in ls.php in Landshop Real Estate Commerce System 0.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) start, (2) search_order, (3) search_type, (4) search_area, and (5) keyword parameters. | Assigned (20051205) | None (candidate not yet proposed) | View |
Page 18616 of 20943, showing 5 records out of 104715 total, starting on record 93076, ending on 93080