CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13818  CVE-2005-2612  Candidate  Direct code injection vulnerability in WordPress 1.5.1.3 and earlier allows remote attackers to execute arbitrary PHP code via the cache_lastpostdate[server] cookie.  Assigned (20050817)  None (candidate not yet proposed)    View
13819  CVE-2005-2613  Candidate  Unknown vulnerability in CPAINT Ajax Toolkit before 1.3-SP allows attackers to execute arbitrary PHP or ASP code or read files via unknown vectors.  Assigned (20050817)  None (candidate not yet proposed)    View
13820  CVE-2005-2614  Candidate  Discuz! 4.0 rc4 does not properly restrict types of files that are uploaded to the server, which allows remote attackers to execute arbitrary commands via a filename containing ".php.rar" or other multiple extensions that include .php.  Assigned (20050817)  None (candidate not yet proposed)    View
13821  CVE-2005-2615  Candidate  Unknown vulnerability in session.php in EQdkp before 1.3.0 has unknown impact and attack vectors, possibly involving auto_login_id.  Assigned (20050817)  None (candidate not yet proposed)    View
13822  CVE-2005-2616  Candidate  Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path parameter to (1) initialize.php, (2) customize.php, (3) form.php, or (4) index.php.  Assigned (20050817)  None (candidate not yet proposed)    View

Page 18990 of 20943, showing 5 records out of 104715 total, starting on record 94946, ending on 94950

Actions