CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14515  CVE-2005-3309  Candidate  Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in detail.php and the catid parameter in (2) get.php and (3) index.php.  Assigned (20051026)  None (candidate not yet proposed)    View
14516  CVE-2005-3310  Candidate  Interpretation conflict in phpBB 2.0.17, with remote avatars and avatar uploading enabled, allows remote authenticated users to inject arbitrary web script or HTML via an HTML file with a GIF or JPEG file extension, which causes the HTML to be executed by a victim who views the file in Internet Explorer, which renders malformed image types as HTML, enabling cross-site scripting (XSS) attacks. NOTE: it could be argued that this vulnerability is due to a design flaw in Internet Explorer (CVE-2005-3312) and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in phpBB.  Assigned (20051026)  None (candidate not yet proposed)    View
14517  CVE-2005-3311  Candidate  BMC Software Control-M 6.1.03 for Solaris, and possibly other platforms, allows local users to overwrite arbitrary files via a symlink attack on temporary files.  Assigned (20051026)  None (candidate not yet proposed)    View
14518  CVE-2005-3312  Candidate  The HTML rendering engine in Microsoft Internet Explorer 6.0 allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML in corrupted images and other files such as .GIF, JPG, and WAV, which is rendered as HTML when the user clicks on the link, even though the web server response and file extension indicate that it should be treated as a different file type.  Assigned (20051026)  None (candidate not yet proposed)    View
14519  CVE-2005-3313  Candidate  The IRC protocol dissector in Ethereal 0.10.13 allows remote attackers to cause a denial of service (infinite loop).  Assigned (20051026)  None (candidate not yet proposed)    View

Page 18815 of 20943, showing 5 records out of 104715 total, starting on record 94071, ending on 94075

Actions