CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11635  CVE-2005-0429  Candidate  Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 through 3.0.4, when showforumusers is enabled, allows remote attackers to execute inject arbitrary PHP commands via the comma parameter.  Assigned (20050215)  None (candidate not yet proposed)    View
11634  CVE-2005-0428  Candidate  The DNSPacket::expand method in dnspacket.cc in PowerDNS before 2.9.17 allows remote attackers to cause a denial of service by sending a random stream of bytes.  Assigned (20050215)  None (candidate not yet proposed)    View
11633  CVE-2005-0427  Candidate  The ebuild of Webmin before 1.170-r3 on Gentoo Linux includes the encrypted root password in the miniserv.users file when building a tbz2 of the webmin package, which allows remote attackers to obtain and possibly crack the encrypted password.  Assigned (20050215)  None (candidate not yet proposed)    View
11632  CVE-2005-0426  Candidate  Unknown vulnerability in Solaris 8 and 9 allows remote attackers to cause a denial of service (panic) via "Heavy UDP Usage" that triggers a NULL dereference.  Assigned (20050215)  None (candidate not yet proposed)    View
11631  CVE-2005-0425  Candidate  Unknown vulnerability in IBM Websphere Application Server 5.0, 5.1, and 6.0 when running on Windows, allows remote attackers to obtain the source code for Java Server Pages (.jsp) via a crafted URL that causes the page to be processed by the file serving servlet instead of the JSP engine.  Assigned (20050215)  None (candidate not yet proposed)    View

Page 18617 of 20943, showing 5 records out of 104715 total, starting on record 93081, ending on 93085

Actions