CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14075  CVE-2005-2869  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4 allow remote attackers to inject arbitrary web script or HTML via (1) the Username to libraries/auth/cookie.auth.lib.php or (2) the error parameter to error.php.  Assigned (20050908)  None (candidate not yet proposed)    View
14076  CVE-2005-2870  Candidate  Unknown vulnerability in the net-svc script on Solaris 10 allows remote authenticated users to execute arbitrary code on a DHCP client via certain DHCP responses.  Assigned (20050908)  None (candidate not yet proposed)    View
14013  CVE-2005-2807  Candidate  frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to read portions of arbitrary files via the -f command line option.  Assigned (20050907)  None (candidate not yet proposed)    View
14014  CVE-2005-2808  Candidate  frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restrictions and access blocked hosts.  Assigned (20050907)  None (candidate not yet proposed)    View
14015  CVE-2005-2809  Candidate  silc daemon (silcd.c) in Secure Internet Live Conferencing (SILC) 1.0 and earlier allows local users to overwrite arbitrary files via a symlink attack on the silcd.[PID].stats temporary file.  Assigned (20050907)  None (candidate not yet proposed)    View

Page 18920 of 20943, showing 5 records out of 104715 total, starting on record 94596, ending on 94600

Actions