CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11145  CVE-2004-2719  Candidate  Buffer overflow in the UrlToLocal function in PunyLib.dll of Foxmail 5.0.300 allows remote attackers to execute arbitrary code via a mail message with a long From field, a different issue than CVE-2005-0339.  Assigned (20071006)  None (candidate not yet proposed)    View
11144  CVE-2004-2718  Candidate  PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive information including database passwords via a direct request.  Assigned (20071006)  None (candidate not yet proposed)    View
11143  CVE-2004-2717  Candidate  Multiple directory traversal vulnerabilities in admin.php3 in PHPMyChat 0.14.5 allow remote attackers with administrative privileges to read arbitrary files via a .. (dot dot) in the (1) sheet and (2) What parameters.  Assigned (20071006)  None (candidate not yet proposed)    View
11142  CVE-2004-2716  Candidate  Multiple SQL injection vulnerabilities in usersL.php3 in PHPMyChat 0.14.5 allow remote attackers to execute arbitrary SQL commands via the (1) sortBy, (2) sortOrder, (3) startReg, (4) U, (5) LastCheck , and (6) R parameters.  Assigned (20071006)  None (candidate not yet proposed)    View
11141  CVE-2004-2715  Candidate  edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false.  Assigned (20071006)  None (candidate not yet proposed)    View

Page 18715 of 20943, showing 5 records out of 104715 total, starting on record 93571, ending on 93575

Actions