CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13840  CVE-2005-2634  Candidate  Buffer overflow in the Log-SCR function in the "Log to Screen" feature in WinFtp Server 1.6.8 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long request.  Assigned (20050820)  None (candidate not yet proposed)    View
13841  CVE-2005-2635  Candidate  Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot dot) in the (1) layerstyle parameter to adlayer.php or (2) language parameter to js-form.php.  Assigned (20050820)  None (candidate not yet proposed)    View
13842  CVE-2005-2636  Candidate  SQL injection vulnerability in lib-view-direct.inc.php in phpAdsNew and phpPgAds before 2.0.6 allows remote attackers to execute arbitrary SQL commands via the clientid parameter.  Assigned (20050820)  None (candidate not yet proposed)    View
13843  CVE-2005-2637  Candidate  Multiple SQL injection vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) Match or (2) CatID parameter to SearchResults.php, or (3) the password to AccessControl.php.  Assigned (20050820)  None (candidate not yet proposed)    View
13844  CVE-2005-2638  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) NewsMode parameter to NewsCategoryForm.php, or the (2) Match or (3) NewsMode parameter to SearchResults.php.  Assigned (20050820)  None (candidate not yet proposed)    View

Page 18963 of 20943, showing 5 records out of 104715 total, starting on record 94811, ending on 94815

Actions