CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14730  CVE-2005-3524  Candidate  Buffer overflow in the SSL-ready version of linux-ftpd (linux-ftpd-ssl) 0.17 allows remote attackers to execute arbitrary code by creating a long directory name, then executing the XPWD command.  Assigned (20051107)  None (candidate not yet proposed)    View
14713  CVE-2005-3507  Candidate  Directory traversal vulnerability in CuteNews 1.4.1 allows remote attackers to include arbitrary files, execute code, and gain privileges via "../" sequences in the template parameter to (1) show_archives.php and (2) show_news.php.  Assigned (20051106)  None (candidate not yet proposed)    View
14714  CVE-2005-3508  Candidate  SQL injection vulnerability in showGallery.php in Gallery (Galerie) 2.4 allows remote attackers to execute arbitrary SQL commands via the galid parameter.  Assigned (20051106)  None (candidate not yet proposed)    View
14715  CVE-2005-3509  Candidate  Multiple SQL injection vulnerabilities in JPortal allow remote attackers to execute arbitrary SQL commands via (1) banner.php or the id parameter to (2) print.php, (3) comment.php, and (4) news.php.  Assigned (20051106)  None (candidate not yet proposed)    View
14716  CVE-2005-3510  Candidate  Apache Tomcat 5.5.0 to 5.5.11 allows remote attackers to cause a denial of service (CPU consumption) via a large number of simultaneous requests to list a web directory that has a large number of files.  Assigned (20051106)  None (candidate not yet proposed)    View

Page 18772 of 20943, showing 5 records out of 104715 total, starting on record 93856, ending on 93860

Actions