CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15043  CVE-2005-3839  Candidate  Cross-site scripting (XSS) vulnerability in SupportPRO Supportdesk allows remote attackers to inject arbitrary web script or HTML via the (1) post tickers and (2) view tickets options.  Assigned (20051126)  None (candidate not yet proposed)    View
15044  CVE-2005-3840  Candidate  SQL injection vulnerability in kb.php in Omnistar Live 5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category_id parameter. NOTE: due to a typo, an Internet Explorer issue was incorrectly assigned this identifier, but the correct identifier is CVE-2005-3240.  Assigned (20051126)  None (candidate not yet proposed)    View
15045  CVE-2005-3841  Candidate  Cross-site scripting (XSS) vulnerability in kPlaylist 1.6 (build 400), and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via the searchfor search parameter.  Assigned (20051126)  None (candidate not yet proposed)    View
15046  CVE-2005-3842  Candidate  SQL injection vulnerability in index.php in pdjk-support suite 1.1a and earlier allows remote attackers to execute arbitrary SQL commands via the (1) rowstart, (2) news_id, and (3) faq_id parameters.  Assigned (20051126)  None (candidate not yet proposed)    View
15047  CVE-2005-3843  Candidate  SQL injection vulnerability in faq.php in Nicecoder iDesk 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.  Assigned (20051126)  None (candidate not yet proposed)    View

Page 18675 of 20943, showing 5 records out of 104715 total, starting on record 93371, ending on 93375

Actions