CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14533 | CVE-2005-3327 | Candidate | Network Appliance Data ONTAP 7.0 and earlier allows iSCSI Initiators to bypass iSCSI authentication via a modified client that skips the Security (Start) mode, as required by the Login Negotiation protocol, and uses Operational mode without proving identity. | Assigned (20051027) | None (candidate not yet proposed) | View | |
14534 | CVE-2005-3328 | Candidate | PHP remote file inclusion vulnerability in common.php in PunBB 1.1.2 through 1.1.5 allows remote attackers to execute arbitrary code via the pun_root parameter. | Assigned (20051027) | None (candidate not yet proposed) | View | |
14535 | CVE-2005-3329 | Candidate | Cross-site scripting (XSS) vulnerability in RSA Authentication Agent for Web 5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the image parameter in a GetPic operation. | Assigned (20051027) | None (candidate not yet proposed) | View | |
14536 | CVE-2005-3330 | Candidate | The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2) WordPress, (3) Ampache, and (4) Jinzora, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTPS URL to an SSL protected web page, which is not properly handled by the fetch function. | Assigned (20051027) | None (candidate not yet proposed) | View | |
14537 | CVE-2005-3331 | Candidate | viewpatch in mgdiff 1.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files. | Assigned (20051027) | None (candidate not yet proposed) | View |
Page 18807 of 20943, showing 5 records out of 104715 total, starting on record 94031, ending on 94035