CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14050  CVE-2005-2844  Candidate  Buffer overflow in MMClient.exe in Indiatimes Messenger 6.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long group name argument to the RenameGroup function in the MMClient.MunduMessenger.1 ActiveX object.  Assigned (20050908)  None (candidate not yet proposed)    View
14051  CVE-2005-2845  Candidate  Ariba Spend Management System sends the username and password to the server in plaintext in a POST request, which allows remote attackers to obtain sensitive information.  Assigned (20050908)  None (candidate not yet proposed)    View
14052  CVE-2005-2846  Candidate  PHP remote file inclusion vulnerability in lang.php in CMS Made Simple 0.10 and earlier allows remote attackers to execute arbitrary PHP code via the nls[file][vx][vxsfx] parameter.  Assigned (20050908)  None (candidate not yet proposed)    View
14053  CVE-2005-2847  Candidate  img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.  Assigned (20050908)  None (candidate not yet proposed)    View
14054  CVE-2005-2848  Candidate  Directory traversal vulnerability in img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.  Assigned (20050908)  None (candidate not yet proposed)    View

Page 18915 of 20943, showing 5 records out of 104715 total, starting on record 94571, ending on 94575

Actions