CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13168  CVE-2005-1962  Candidate  Cross-site scripting (XSS) vulnerability in Cerberus Helpdesk 0.97.3 allows remote attackers to inject arbitrary web script or HTML via the (1) errorcode parameter to index.php or (2) certain fields to clients.php.  Assigned (20050614)  None (candidate not yet proposed)    View
13169  CVE-2005-1963  Candidate  Cerberus Helpdesk 0.97.3 allows remote attackers to obtain sensitive information via certain requests to (1) reports.php, (2) knowledgebase.php, or (3) configuration.php, which leaks the information in a PHP error message.  Assigned (20050614)  None (candidate not yet proposed)    View
13170  CVE-2005-1964  Candidate  PHP remote file inclusion vulnerability in utilit.php for Ovidentia Portal allows remote attackers to execute arbitrary PHP code via the babInstallPath parameter.  Assigned (20050614)  None (candidate not yet proposed)    View
13171  CVE-2005-1965  Candidate  PHP remote file inclusion vulnerability in siteframe.php for Broadpool Siteframe allows remote attackers to execute arbitrary code via a URL in the LOCAL_PATH parameter.  Assigned (20050614)  None (candidate not yet proposed)    View
13172  CVE-2005-1966  Candidate  The eTrace_validaddr function in eTrace plugin for e107 portal allows remote attackers to execute arbitrary commands via shell metacharacters after a valid argument to the etrace_host parameter.  Assigned (20050614)  None (candidate not yet proposed)    View

Page 19284 of 20943, showing 5 records out of 104715 total, starting on record 96416, ending on 96420

Actions