CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15028  CVE-2005-3824  Candidate  The uploads module in vTiger CRM 4.2 and earlier allows remote attackers to upload arbitrary files, such as PHP files, via the add2db action.  Assigned (20051126)  None (candidate not yet proposed)    View
15029  CVE-2005-3825  Candidate  SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a result action.  Assigned (20051126)  None (candidate not yet proposed)    View
15030  CVE-2005-3826  Candidate  Multiple SQL injection vulnerabilities in Ezyhelpdesk 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) edit_id, (2) faq_id, and (3) c_id parameters in a query string, and (4) the search engine, possibly involving the search_string parameter.  Assigned (20051126)  None (candidate not yet proposed)    View
15031  CVE-2005-3827  Candidate  SQL injection vulnerability in product_cat in AgileBill 1.4.92 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20051126)  None (candidate not yet proposed)    View
15032  CVE-2005-3828  Candidate  SQL injection vulnerability in index.php in ActiveCampaign KnowledgeBuilder 2.4 and earlier allows remote attackers to execute arbitrary SQL commands via the article parameter.  Assigned (20051126)  None (candidate not yet proposed)    View

Page 18672 of 20943, showing 5 records out of 104715 total, starting on record 93356, ending on 93360

Actions