CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15201  CVE-2005-3997  Candidate  Zen Cart 1.2.6d and earlier, under certain PHP configurations, allows remote attackers to obtain sensitive information via direct requests to files in the admin/includes directory, including (1) graphs/banner_daily.php, (2) graphs/banner_infobox.php, (3) graphs/banner_yearly.php, (4) graphs/banner_monthly.php, (5) application_bottom.php, (6) attributes_preview.php, (7) modules/category_product_listing.php, (8) modules/copy_to_confirm.php, (9) modules/delete_product_confirm.php, and (10) modules/move_product_confirm.php, which leaks the web server path in the resulting error message.  Assigned (20051204)  None (candidate not yet proposed)    View
15202  CVE-2005-3998  Candidate  Cross-site scripting (XSS) vulnerability in search.asp in Solupress News 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.  Assigned (20051204)  None (candidate not yet proposed)    View
15203  CVE-2005-3999  Candidate  Cross-site scripting (XSS) vulnerability in Search.asp in SiteBeater MP3 Catalog 2.03 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.  Assigned (20051204)  None (candidate not yet proposed)    View
15204  CVE-2005-4000  Candidate  Cross-site scripting (XSS) vulnerability in archive.asp in SiteBeater News System 4.00 and earlier allows remote attackers to inject arbitrary web script or HTML via the sKeywords parameter.  Assigned (20051204)  None (candidate not yet proposed)    View
15205  CVE-2005-4001  Candidate  Multiple SQL injection vulnerabilities in phpYellowTM Pro Edition and Lite Edition 5.33 allow remote attackers to execute arbitrary SQL commands via the (1) haystack parameter to search_result.php or (2) ckey parameter to print_me.php.  Assigned (20051204)  None (candidate not yet proposed)    View

Page 18631 of 20943, showing 5 records out of 104715 total, starting on record 93151, ending on 93155

Actions