CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15084  CVE-2005-3880  Candidate  Multiple SQL injection vulnerabilities in Omnistar KBase 4.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter in users/comments.php, (2) category_id and (3) id parameters in users/kb.php.  Assigned (20051129)  None (candidate not yet proposed)    View
15085  CVE-2005-3881  Candidate  SQL injection vulnerability in search.php in AtlantisFAQ Knowledge Base Software 2.03 and earlier allows remote attackers to execute arbitrary SQL commands via the searchStr parameter.  Assigned (20051129)  None (candidate not yet proposed)    View
15086  CVE-2005-3882  Candidate  SQL injection vulnerability in answer.php in FAQSystems FAQRing Knowledge Base Software 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20051129)  None (candidate not yet proposed)    View
15087  CVE-2005-3883  Candidate  CRLF injection vulnerability in the mb_send_mail function in PHP before 5.1.0 might allow remote attackers to inject arbitrary e-mail headers via line feeds (LF) in the "To" address argument.  Assigned (20051129)  None (candidate not yet proposed)    View
15088  CVE-2005-3884  Candidate  Multiple SQL injection vulnerabilities in the search action in Zainu 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) term and (2) start parameters to index.php.  Assigned (20051129)  None (candidate not yet proposed)    View

Page 18660 of 20943, showing 5 records out of 104715 total, starting on record 93296, ending on 93300

Actions