CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14850  CVE-2005-3646  Candidate  Multiple SQL injection vulnerabilities in lib-sessions.inc.php in phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allow remote attackers to execute arbitrary SQL commands via the sessionID parameter in (1) logout.php and (2) index.php.  Assigned (20051117)  None (candidate not yet proposed)    View
14851  CVE-2005-3647  Candidate  Folder Guard allows local users to bypass protections by running from or installing to the temporary files directory.  Assigned (20051117)  None (candidate not yet proposed)    View
14852  CVE-2005-3648  Candidate  Multiple SQL injection vulnerabilities in the get_record function in datalib.php in Moodle 1.5.2 allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) category.php and (2) info.php.  Assigned (20051117)  None (candidate not yet proposed)    View
14853  CVE-2005-3649  Candidate  jumpto.php in Moodle 1.5.2 allows remote attackers to redirect users to other sites via the jump parameter.  Assigned (20051117)  None (candidate not yet proposed)    View
14854  CVE-2005-3650  Candidate  The CodeSupport.ocx ActiveX control, as used by Sony to uninstall the First4Internet XCP DRM, has "safe for scripting" enabled, which allows remote attackers to execute arbitrary code by calling vulnerable functions such as RebootMachine, IsAdministrator, and ExecuteCode.  Assigned (20051117)  None (candidate not yet proposed)    View

Page 18714 of 20943, showing 5 records out of 104715 total, starting on record 93566, ending on 93570

Actions