CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14794  CVE-2005-3588  Candidate  SQL injection vulnerability in admin.php in Advanced Guestbook 2.2 allows remote attackers to execute arbitrary SQL commands and gain privileges via the username field.  Assigned (20051116)  None (candidate not yet proposed)    View
14795  CVE-2005-3589  Candidate  Buffer overflow in FileZilla Server Terminal 0.9.4d may allow remote attackers to cause a denial of service (terminal crash) via a long USER ftp command.  Assigned (20051116)  None (candidate not yet proposed)    View
14796  CVE-2005-3591  Candidate  Macromedia Flash plugin (1) Flash.ocx 7.0.19.0 (Windows) and earlier and (2) libflashplayer.so before 7.0.25.0 (Unix) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via parameters to the ActionDefineFunction ActionScript call in a SWF file, which causes an improper memory access condition, a different vulnerability than CVE-2005-2628.  Assigned (20051116)  None (candidate not yet proposed)    View
14797  CVE-2005-3592  Candidate  index.php CuteNews 1.4.0 and earlier allows remote attackers to obtain the path of the installation path of the application by triggering an error message, such as by entering multiple ../ (dot dot slash) in the archive parameter.  Assigned (20051116)  None (candidate not yet proposed)    View
14798  CVE-2005-3594  Candidate  game_score.php in e107 allows remote attackers to insert high scores via HTTP POST methods utilizing the $player_name, $player_score, and $game_name variables.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18756 of 20943, showing 5 records out of 104715 total, starting on record 93776, ending on 93780

Actions