CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14632  CVE-2005-3426  Candidate  Cisco CSS 11500 Content Services Switch (CSS) with SSL termination services allows remote attackers to cause a denial of service (memory corruption and device reload) via a malformed client certificate during SSL session negotiation.  Assigned (20051101)  None (candidate not yet proposed)    View
14633  CVE-2005-3427  Candidate  The Cisco Management Center (MC) for IPS Sensors (IPS MC) 2.1 can omit port field values while generating the Cisco IOS IPS configuration file, wich can cause some signatures to be disabled and makes it easier for attackers to escape detection.  Assigned (20051101)  None (candidate not yet proposed)    View
14592  CVE-2005-3386  Candidate  SQL injection vulnerability in Techno Dreams Web Directory script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in admin/login.asp.  Assigned (20051029)  None (candidate not yet proposed)    View
14569  CVE-2005-3363  Candidate  SQL injection vulnerability in Saphp Lesson, possibly saphp Lesson1.1 and saphpLesson2.0, allows remote attackers to execute arbitrary SQL commands via the forumid parameter in (1) showcat.php and (2) add.php.  Assigned (20051029)  None (candidate not yet proposed)    View
14570  CVE-2005-3364  Candidate  Multiple SQL injection vulnerabilities in DboardGear allow remote attackers to execute arbitrary SQL commands via (1) the buddy parameter in buddy.php, (2) the u2uid parameter in u2u.php, and (3) an invalid theme file in the themes action to ctrtools.php.  Assigned (20051029)  None (candidate not yet proposed)    View

Page 18799 of 20943, showing 5 records out of 104715 total, starting on record 93991, ending on 93995

Actions