CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11510 | CVE-2005-0304 | Candidate | Directory traversal vulnerability in DivX Player 2.6 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a filename in a ZIP file for a skin. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11509 | CVE-2005-0303 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_supportError.asp or (2) comersus_backofficelite_supportError.asp in BackOffice Lite 6.0 and 6.01 allow remote attackers to inject arbitrary web script or HTML via the error parameter. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11508 | CVE-2005-0302 | Candidate | SQL injection vulnerability in default.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to execute arbitrary SQL commands via the referer field in the HTTP header. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11507 | CVE-2005-0301 | Candidate | comersus_backoffice_install10.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to bypass authentication and gain privileges via a direct request to the program. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11506 | CVE-2005-0300 | Candidate | Directory traversal vulnerability in session.php in JSBoard 2.0.9 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the table parameter. | Assigned (20050210) | None (candidate not yet proposed) | View |
Page 18642 of 20943, showing 5 records out of 104715 total, starting on record 93206, ending on 93210