CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11145 | CVE-2004-2719 | Candidate | Buffer overflow in the UrlToLocal function in PunyLib.dll of Foxmail 5.0.300 allows remote attackers to execute arbitrary code via a mail message with a long From field, a different issue than CVE-2005-0339. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11144 | CVE-2004-2718 | Candidate | PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive information including database passwords via a direct request. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11143 | CVE-2004-2717 | Candidate | Multiple directory traversal vulnerabilities in admin.php3 in PHPMyChat 0.14.5 allow remote attackers with administrative privileges to read arbitrary files via a .. (dot dot) in the (1) sheet and (2) What parameters. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11142 | CVE-2004-2716 | Candidate | Multiple SQL injection vulnerabilities in usersL.php3 in PHPMyChat 0.14.5 allow remote attackers to execute arbitrary SQL commands via the (1) sortBy, (2) sortOrder, (3) startReg, (4) U, (5) LastCheck , and (6) R parameters. | Assigned (20071006) | None (candidate not yet proposed) | View | |
11141 | CVE-2004-2715 | Candidate | edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false. | Assigned (20071006) | None (candidate not yet proposed) | View |
Page 18715 of 20943, showing 5 records out of 104715 total, starting on record 93571, ending on 93575