CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13584  CVE-2005-2378  Candidate  Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or relative path to the (1) CUSTOMIZE or (2) desformat parameters to rwservlet. NOTE: vector 2 is probably the same as CVE-2006-0289, and fixed in Jan 2006 CPU.  Assigned (20050726)  None (candidate not yet proposed)    View
13585  CVE-2005-2379  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Oracle Reports 9.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) debug parameter to showenv, (2) test parameter to parsequery, or (3) delimiter or (4) CELLWRAPPER parameter to rwservlet.  Assigned (20050726)  None (candidate not yet proposed)    View
13586  CVE-2005-2380  Candidate  Multiple cross-site scripting vulnerabilities in PHP Surveyor 0.98 allow remote attackers to inject arbitrary web script or HTML via the (1) sid, (2) start, and (3) id parameters to browse.php, or the sid parameter to (4) dataentry.php or (5) export.php.  Assigned (20050726)  None (candidate not yet proposed)    View
13587  CVE-2005-2381  Candidate  PHP Surveyor 0.98 allows remote attackers to obtain sensitive information via a direct request to (1) question.php, (2) survey.php, or (3) group.php in the root directory, a direct request to (4) database.php, (5) sessioncontrol.php, (6) html.php, (7) sessioncontrol.php, an invalid (8) qid parameter to dumpquestion.php, or an invalid lid parameter to (9) labels.php or (10) dumplabel.php, which reveal the path in an error message.  Assigned (20050726)  None (candidate not yet proposed)    View
13588  CVE-2005-2382  Candidate  Oray PeanutHull 3.0.1.0 and earlier does not properly drop SYSTEM privileges when launched from the system tray, which allows local users to gain privileges by accessing the Help functionality.  Assigned (20050726)  None (candidate not yet proposed)    View

Page 19067 of 20943, showing 5 records out of 104715 total, starting on record 95331, ending on 95335

Actions