CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13199 | CVE-2005-1993 | Candidate | Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges via a symlink attack. | Assigned (20050620) | None (candidate not yet proposed) | View | |
13200 | CVE-2005-1994 | Candidate | Finjan SurfinGate 7.0SP2 and SP3 allows remote attackers to download blocked files via hex-encoded characters in a filename, as demonstrated using "%2e". | Assigned (20050620) | None (candidate not yet proposed) | View | |
13201 | CVE-2005-1995 | Candidate | Bitrix Site Manager 4.0.x allows remote attackers to obtain sensitive information via direct request to (1) subscr_form.php or (2) dbquery_error.php, which reveals the path in an error message. | Assigned (20050620) | None (candidate not yet proposed) | View | |
13202 | CVE-2005-1996 | Candidate | PHP remote file inclusion vulnerability in start.php in Bitrix Site Manager 4.0.x allows remote attackers to execute arbitrary PHP code via the _SERVER[DOCUMENT_ROOT] parameter. | Assigned (20050620) | None (candidate not yet proposed) | View | |
13203 | CVE-2005-1997 | Candidate | show.php in McGallery 1.1 allows remote attackers to connect to arbitrary databases, or gain sensitive information by triggering an error, via a modified host parameter. | Assigned (20050620) | None (candidate not yet proposed) | View |
Page 19272 of 20943, showing 5 records out of 104715 total, starting on record 96356, ending on 96360