CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11425 | CVE-2005-0219 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Gallery 1.3.4-pl1 allow remote attackers to inject arbitrary web script or HTML via (1) the index field in add_comment.php, (2) set_albumName, (3) slide_index, (4) slide_full, (5) slide_loop, (6) slide_pause, (7) slide_dir fields in slideshow_low.php, or (8) username field in search.php. | Assigned (20050205) | None (candidate not yet proposed) | View | |
11424 | CVE-2005-0218 | Candidate | ClamAV 0.80 and earlier allows remote attackers to bypass virus scanning via a base64 encoded image in a data: (RFC 2397) URL. | Assigned (20050205) | None (candidate not yet proposed) | View | |
11423 | CVE-2005-0217 | Candidate | SQL injection vulnerability in index.php in Invision Community Blog allows remote attackers to execute arbitrary SQL commands via the eid parameter. | Assigned (20050201) | None (candidate not yet proposed) | View | |
11422 | CVE-2005-0216 | Candidate | Cross-site scripting (XSS) vulnerability in formmail.php in Woltlab Burning Board Lite 1.0.0, 1.0.1e, and possibly other versions, allows remote attackers to inject arbitrary web sript and HTML via the userid parameter. | Assigned (20050201) | None (candidate not yet proposed) | View | |
11421 | CVE-2005-0215 | Candidate | Mozilla 1.6 and possibly other versions allows remote attackers to cause a denial of service (application crash) via a XBM (X BitMap) file with a large (1) height or (2) width value. | Assigned (20050201) | None (candidate not yet proposed) | View |
Page 18659 of 20943, showing 5 records out of 104715 total, starting on record 93291, ending on 93295