CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14684  CVE-2005-3478  Candidate  SQL injection vulnerability in index.php in PHPCafe.net Tutorials Manager 1.0 Beta 2 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20051103)  None (candidate not yet proposed)    View
14685  CVE-2005-3479  Candidate  Cross-site scripting (XSS) vulnerability in login.asp in Ringtail CaseBook 6.1.0 allows remote attackers to inject arbitrary web script or HTML via the users parameter.  Assigned (20051103)  None (candidate not yet proposed)    View
14686  CVE-2005-3480  Candidate  login.asp in Ringtail CaseBook 6.1.0 displays different error messages depending on whether a user exists or not, which allows remote attackers to determine valid usernames.  Assigned (20051103)  None (candidate not yet proposed)    View
14687  CVE-2005-3481  Candidate  Cisco IOS 12.0 to 12.4 might allow remote attackers to execute arbitrary code via a heap-based buffer overflow in system timers. NOTE: this issue does not correspond to a specific vulnerability, rather a general weakness that only increases the feasibility of exploitation of any vulnerabilities that might exist. Such design-level weaknesses normally are not included in CVE, so perhaps this issue should be REJECTed.  Assigned (20051103)  None (candidate not yet proposed)    View
14688  CVE-2005-3482  Candidate  Cisco 1200, 1131, and 1240 series Access Points, when operating in Lightweight Access Point Protocol (LWAPP) mode and controlled by 2000 and 4400 series Airespace WLAN controllers running 3.1.59.24, allow remote attackers to send unencrypted traffic to a secure network using frames with the MAC address of an authenticated end host.  Assigned (20051103)  None (candidate not yet proposed)    View

Page 18777 of 20943, showing 5 records out of 104715 total, starting on record 93881, ending on 93885

Actions