CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14268 | CVE-2005-3062 | Candidate | PHP remote file inclusion vulnerability in index.php in AlstraSoft E-Friends 4.0 allows remote attackers to execute arbitrary PHP code via the mode parameter. | Assigned (20050927) | None (candidate not yet proposed) | View | |
14269 | CVE-2005-3063 | Candidate | SQL injection vulnerability in MailGust 1.9 allows remote attackers to execute arbitrary SQL commands via the email field on the password reminder page. | Assigned (20050927) | None (candidate not yet proposed) | View | |
14270 | CVE-2005-3064 | Candidate | MultiTheftAuto 0.5 patch 1 and earlier does not properly verify client privileges when running command 40, which allows remote attackers to change or delete the message of the day (motd.txt). | Assigned (20050927) | None (candidate not yet proposed) | View | |
14271 | CVE-2005-3065 | Candidate | MultiTheftAuto 0.5 patch 1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted command 40 that causes a -1 length to be used and triggers an out-of-bounds read. | Assigned (20050927) | None (candidate not yet proposed) | View | |
14272 | CVE-2005-3066 | Candidate | Cross-site scripting (XSS) vulnerability in perldiver.pl in PerlDiver 1.x allows remote attackers to inject arbitrary web script or HTML via the query string. NOTE: this issue was originally disputed by the vendor, but it has since been acknowledged. | Assigned (20050927) | None (candidate not yet proposed) | View |
Page 18871 of 20943, showing 5 records out of 104715 total, starting on record 94351, ending on 94355