CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13898  CVE-2005-2692  Candidate  Multiple SQL injection vulnerabilities in RunCMS 1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) addquery and (2) subquery parameters to the newbb plus module, the forum parameter to (3) newtopic.php, (4) edit.php, or (5) reply.php in the newbb plus module, or (6) the msg_id parameter to print.php in the messages module.  Assigned (20050824)  None (candidate not yet proposed)    View
13871  CVE-2005-2665  Candidate  Stack-based buffer overflow in expires.c in Elm 2.5 PL5 through PL7, and possibly other versions, allows remote attackers to execute arbitrary code via an e-mail message with a long Expires header.  Assigned (20050823)  None (candidate not yet proposed)    View
13872  CVE-2005-2666  Candidate  SSH, as implemented in OpenSSH before 4.0 and possibly other implementations, stores hostnames, IP addresses, and keys in plaintext in the known_hosts file, which makes it easier for an attacker that has compromised an SSH user"s account to generate a list of additional targets that are more likely to have the same password or key.  Assigned (20050823)  None (candidate not yet proposed)    View
13873  CVE-2005-2667  Candidate  Unknown vulnerability in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows attackers to cause a denial of service via unknown vectors, aka the "CAM TCP port vulnerability."  Assigned (20050823)  None (candidate not yet proposed)    View
13874  CVE-2005-2668  Candidate  Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors.  Assigned (20050823)  None (candidate not yet proposed)    View

Page 18952 of 20943, showing 5 records out of 104715 total, starting on record 94756, ending on 94760

Actions