CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13607  CVE-2005-2401  Candidate  PHP-Fusion allows remote attackers to inject arbitrary Cascading Style Sheets (CSS) via the BBCode color tag.  Assigned (20050727)  None (candidate not yet proposed)    View
13608  CVE-2005-2402  Candidate  Cross-site scripting (XSS) vulnerability in search.php in PHPSiteSearch 1.7.7d allows remote attackers to inject arbitrary web script or HTML via the query parameter.  Assigned (20050727)  None (candidate not yet proposed)    View
13609  CVE-2005-2403  Candidate  The login protocol in RealChat 3.5.1b does not use authentication, which allows remote attackers to log on as other users by sniffing the beginning of a chat session and replaying it via a modified username.  Assigned (20050727)  None (candidate not yet proposed)    View
13610  CVE-2005-2404  Candidate  SQL injection vulnerability in sendcard.php in Sendcard 3.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20050727)  None (candidate not yet proposed)    View
13568  CVE-2005-2362  Candidate  Unknown vulnerability several dissectors in Ethereal 0.9.0 through 0.10.11 allows remote attackers to cause a denial of service (application crash) by reassembling certain packets.  Assigned (20050726)  None (candidate not yet proposed)    View

Page 19063 of 20943, showing 5 records out of 104715 total, starting on record 95311, ending on 95315

Actions