CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13589  CVE-2005-2383  Candidate  SQL injection vulnerability in auth.php in PHPNews 1.2.5 allows remote attackers to execute arbitrary SQL commands via the user parameter in an HTTP POST request.  Assigned (20050726)  None (candidate not yet proposed)    View
13565  CVE-2005-2359  Candidate  The AES-XCBC-MAC algorithm in IPsec in FreeBSD 5.3 and 5.4, when used for authentication without other encryption, uses a constant key instead of the one that was assigned by the system administrator, which can allow remote attackers to spoof packets to establish an IPsec session.  Assigned (20050726)  None (candidate not yet proposed)    View
13566  CVE-2005-2360  Candidate  Unknown vulnerability in the LDAP dissector in Ethereal 0.8.5 through 0.10.11 allows remote attackers to cause a denial of service (free static memory and application crash) via unknown attack vectors.  Assigned (20050726)  None (candidate not yet proposed)    View
13567  CVE-2005-2361  Candidate  Unknown vulnerability in the (1) AgentX dissector, (2) PER dissector, (3) DOCSIS dissector, (4) SCTP graphs, (5) HTTP dissector, (6) DCERPC, (7) DHCP, (8) RADIUS dissector, (9) Telnet dissector, (10) IS-IS LSP dissector, or (11) NCP dissector in Ethereal 0.8.19 through 0.10.11 allows remote attackers to cause a denial of service (application crash or abort) via unknown attack vectors.  Assigned (20050726)  None (candidate not yet proposed)    View
13562  CVE-2005-2356  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20050725)  None (candidate not yet proposed)    View

Page 19068 of 20943, showing 5 records out of 104715 total, starting on record 95336, ending on 95340

Actions