CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10470  CVE-2004-2044  Candidate  PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLite 3.1, and OSC2Nuke 7x do not properly use the eregi() PHP function with $_SERVER["PHP_SELF"] to identify the calling script, which allows remote attackers to directly access scripts, obtain path information via a PHP error message, and possibly gain access, as demonstrated using an HTTP request that contains the "admin.php" string.  Assigned (20050504)  None (candidate not yet proposed)    View
10469  CVE-2004-2043  Candidate  Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows remote attackers to cause a denial of service (crash) via a long database name, as demonstrated using the gsec command.  Assigned (20050504)  None (candidate not yet proposed)    View
10468  CVE-2004-2042  Candidate  Multiple SQL injection vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary SQL code and gain sensitive information via (1) content parameter to content.php, (2) content_id parameter to content.php, or (3) list parameter to news.php.  Assigned (20050504)  None (candidate not yet proposed)    View
10467  CVE-2004-2041  Candidate  PHP remote file inclusion vulnerability in secure_img_render.php in e107 0.615 allows remote attackers to execute arbitrary PHP code by modifying the p parameter to reference a URL on a remote web server that contains the code.  Assigned (20050504)  None (candidate not yet proposed)    View
10466  CVE-2004-2040  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary web script or HTML via the (1) LAN_407 parameter to clock_menu.php, (2) "email article to a friend" field, (3) "submit news" field, or (4) avmsg parameter to usersettings.php.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18850 of 20943, showing 5 records out of 104715 total, starting on record 94246, ending on 94250

Actions