CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14268  CVE-2005-3062  Candidate  PHP remote file inclusion vulnerability in index.php in AlstraSoft E-Friends 4.0 allows remote attackers to execute arbitrary PHP code via the mode parameter.  Assigned (20050927)  None (candidate not yet proposed)    View
14269  CVE-2005-3063  Candidate  SQL injection vulnerability in MailGust 1.9 allows remote attackers to execute arbitrary SQL commands via the email field on the password reminder page.  Assigned (20050927)  None (candidate not yet proposed)    View
14270  CVE-2005-3064  Candidate  MultiTheftAuto 0.5 patch 1 and earlier does not properly verify client privileges when running command 40, which allows remote attackers to change or delete the message of the day (motd.txt).  Assigned (20050927)  None (candidate not yet proposed)    View
14271  CVE-2005-3065  Candidate  MultiTheftAuto 0.5 patch 1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted command 40 that causes a -1 length to be used and triggers an out-of-bounds read.  Assigned (20050927)  None (candidate not yet proposed)    View
14272  CVE-2005-3066  Candidate  Cross-site scripting (XSS) vulnerability in perldiver.pl in PerlDiver 1.x allows remote attackers to inject arbitrary web script or HTML via the query string. NOTE: this issue was originally disputed by the vendor, but it has since been acknowledged.  Assigned (20050927)  None (candidate not yet proposed)    View

Page 18871 of 20943, showing 5 records out of 104715 total, starting on record 94351, ending on 94355

Actions