CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14533  CVE-2005-3327  Candidate  Network Appliance Data ONTAP 7.0 and earlier allows iSCSI Initiators to bypass iSCSI authentication via a modified client that skips the Security (Start) mode, as required by the Login Negotiation protocol, and uses Operational mode without proving identity.  Assigned (20051027)  None (candidate not yet proposed)    View
14534  CVE-2005-3328  Candidate  PHP remote file inclusion vulnerability in common.php in PunBB 1.1.2 through 1.1.5 allows remote attackers to execute arbitrary code via the pun_root parameter.  Assigned (20051027)  None (candidate not yet proposed)    View
14535  CVE-2005-3329  Candidate  Cross-site scripting (XSS) vulnerability in RSA Authentication Agent for Web 5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the image parameter in a GetPic operation.  Assigned (20051027)  None (candidate not yet proposed)    View
14536  CVE-2005-3330  Candidate  The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2) WordPress, (3) Ampache, and (4) Jinzora, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTPS URL to an SSL protected web page, which is not properly handled by the fetch function.  Assigned (20051027)  None (candidate not yet proposed)    View
14537  CVE-2005-3331  Candidate  viewpatch in mgdiff 1.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.  Assigned (20051027)  None (candidate not yet proposed)    View

Page 18807 of 20943, showing 5 records out of 104715 total, starting on record 94031, ending on 94035

Actions