CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13373  CVE-2005-2167  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Plague News System 0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the cid parameter.  Assigned (20050706)  None (candidate not yet proposed)    View
13374  CVE-2005-2168  Candidate  delete.php in Plague News System 0.6 and earlier allows remote unauthenticated attackers to delete news, comments, and shoutbox posts by modifying the id parameter.  Assigned (20050706)  None (candidate not yet proposed)    View
13375  CVE-2005-2169  Candidate  Directory traversal vulnerability in source.php in Quick & Dirty PHPSource Printer 1.1 and earlier allows remote attackers to read arbitrary files via ".../...//" sequences in the file parameter, which are reduced to "../" when PHPSource Printer uses a regular expression to remove "../" sequences.  Assigned (20050706)  None (candidate not yet proposed)    View
13339  CVE-2005-2133  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1915. Reason: This candidate is a duplicate of CVE-2005-1915. Notes: All CVE users should reference CVE-2005-1915 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050705)  None (candidate not yet proposed)    View
13340  CVE-2005-2134  Candidate  The (1) clcs and (2) emuxki drivers in NetBSD 1.6 through 2.0.2 allow local users to cause a denial of service (kernel crash) by using the set-parameters ioctl on an audio device to change the block size and set the pause state to "unpaused" in the same ioctl, which causes a divide-by-zero error.  Assigned (20050705)  None (candidate not yet proposed)    View

Page 19172 of 20943, showing 5 records out of 104715 total, starting on record 95856, ending on 95860

Actions