CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15018  CVE-2005-3814  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in SmartPPC Pro allow remote attackers to inject arbitrary web script or HTML via the username parameter in (1) directory.php, (2) frames.php, and (3) search.php.  Assigned (20051126)  None (candidate not yet proposed)    View
15019  CVE-2005-3815  Candidate  SQL injection vulnerability in forum.php in Orca Forum 4.3b and earlier allows remote attackers to execute arbitrary SQL commands via the msg parameter.  Assigned (20051126)  None (candidate not yet proposed)    View
15020  CVE-2005-3816  Candidate  Multiple SQL injection vulnerabilities in forum.php in freeForum 1.1 and earlier and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter or (2) thread parameter in thread mode.  Assigned (20051126)  None (candidate not yet proposed)    View
15021  CVE-2005-3817  Candidate  Multiple SQL injection vulnerabilities in Softbiz Web Host Directory Script 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter in search_result.php, (2) sbres_id parameter in review.php, (3) cid parameter in browsecats.php, (4) h_id parameter in email.php, and (5) an unspecified parameter to the search module.  Assigned (20051126)  None (candidate not yet proposed)    View
15022  CVE-2005-3818  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in vTiger CRM 4.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) various input fields, including the contact, lead, and first or last name fields, (2) the record parameter in a DetailView action in the Leads module for index.php, (3) the $_SERVER["PHP_SELF"] variable, which is used in multiple locations such as index.php, and (4) aggregated RSS feeds in the RSS aggregation module.  Assigned (20051126)  None (candidate not yet proposed)    View

Page 18670 of 20943, showing 5 records out of 104715 total, starting on record 93346, ending on 93350

Actions