CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11550  CVE-2005-0344  Candidate  Directory traversal vulnerability in 602LAN SUITE 2004.0.04.1221 allows remote authenticated users to upload and execute arbitrary files via a .. (dot dot) in the filename parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
11549  CVE-2005-0343  Candidate  SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
11548  CVE-2005-0342  Candidate  The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.  Assigned (20050210)  None (candidate not yet proposed)    View
11547  CVE-2005-0341  Candidate  Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks.  Assigned (20050210)  None (candidate not yet proposed)    View
11546  CVE-2005-0340  Candidate  Integer signedness error in Apple File Service (AFP Server) allows remote attackers to cause a denial of service (application crash) via a negative UAM string length in a FPLoginExt packet.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 18634 of 20943, showing 5 records out of 104715 total, starting on record 93166, ending on 93170

Actions