CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13818 | CVE-2005-2612 | Candidate | Direct code injection vulnerability in WordPress 1.5.1.3 and earlier allows remote attackers to execute arbitrary PHP code via the cache_lastpostdate[server] cookie. | Assigned (20050817) | None (candidate not yet proposed) | View | |
13819 | CVE-2005-2613 | Candidate | Unknown vulnerability in CPAINT Ajax Toolkit before 1.3-SP allows attackers to execute arbitrary PHP or ASP code or read files via unknown vectors. | Assigned (20050817) | None (candidate not yet proposed) | View | |
13820 | CVE-2005-2614 | Candidate | Discuz! 4.0 rc4 does not properly restrict types of files that are uploaded to the server, which allows remote attackers to execute arbitrary commands via a filename containing ".php.rar" or other multiple extensions that include .php. | Assigned (20050817) | None (candidate not yet proposed) | View | |
13821 | CVE-2005-2615 | Candidate | Unknown vulnerability in session.php in EQdkp before 1.3.0 has unknown impact and attack vectors, possibly involving auto_login_id. | Assigned (20050817) | None (candidate not yet proposed) | View | |
13822 | CVE-2005-2616 | Candidate | Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path parameter to (1) initialize.php, (2) customize.php, (3) form.php, or (4) index.php. | Assigned (20050817) | None (candidate not yet proposed) | View |
Page 18990 of 20943, showing 5 records out of 104715 total, starting on record 94946, ending on 94950