CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15119  CVE-2005-3915  Candidate  The Internet Key Exchange version 1 (IKEv1) implementation in Clavister Client Web allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.  Assigned (20051130)  None (candidate not yet proposed)    View
15120  CVE-2005-3916  Candidate  SQL injection vulnerability in memberlist.php in WSN Forum 1.21 allows remote attackers to execute arbitrary SQL commands via the id parameter in a profile action.  Assigned (20051130)  None (candidate not yet proposed)    View
15121  CVE-2005-3917  Candidate  SQL injection vulnerability in usersession in CommodityRentals 2.0 Online Rental Business Creator script allows remote attackers to execute arbitrary SQL commands via the user_id parameter.  Assigned (20051130)  None (candidate not yet proposed)    View
15122  CVE-2005-3918  Candidate  ** DISPUTED ** Multiple SQL injection vulnerabilities in OvBB 0.08a allow remote attackers to execute arbitrary SQL commands via the (1) threadid parameter to thread.php and (2) userid parameter to profile.php. NOTE: the vendor disputes these issues, saying "these reports are completely unsubstantial."  Assigned (20051130)  None (candidate not yet proposed)    View
15123  CVE-2005-3919  Candidate  Cross-site scripting (XSS) vulnerability in PBLang 4.65 allows remote attackers to inject arbitrary web script or HTML via multiple fields in (1) UCP.php and (2) SendPm.php.  Assigned (20051130)  None (candidate not yet proposed)    View

Page 18648 of 20943, showing 5 records out of 104715 total, starting on record 93236, ending on 93240

Actions