CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
15119 | CVE-2005-3915 | Candidate | The Internet Key Exchange version 1 (IKEv1) implementation in Clavister Client Web allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to. | Assigned (20051130) | None (candidate not yet proposed) | View | |
15120 | CVE-2005-3916 | Candidate | SQL injection vulnerability in memberlist.php in WSN Forum 1.21 allows remote attackers to execute arbitrary SQL commands via the id parameter in a profile action. | Assigned (20051130) | None (candidate not yet proposed) | View | |
15121 | CVE-2005-3917 | Candidate | SQL injection vulnerability in usersession in CommodityRentals 2.0 Online Rental Business Creator script allows remote attackers to execute arbitrary SQL commands via the user_id parameter. | Assigned (20051130) | None (candidate not yet proposed) | View | |
15122 | CVE-2005-3918 | Candidate | ** DISPUTED ** Multiple SQL injection vulnerabilities in OvBB 0.08a allow remote attackers to execute arbitrary SQL commands via the (1) threadid parameter to thread.php and (2) userid parameter to profile.php. NOTE: the vendor disputes these issues, saying "these reports are completely unsubstantial." | Assigned (20051130) | None (candidate not yet proposed) | View | |
15123 | CVE-2005-3919 | Candidate | Cross-site scripting (XSS) vulnerability in PBLang 4.65 allows remote attackers to inject arbitrary web script or HTML via multiple fields in (1) UCP.php and (2) SendPm.php. | Assigned (20051130) | None (candidate not yet proposed) | View |
Page 18648 of 20943, showing 5 records out of 104715 total, starting on record 93236, ending on 93240