CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13071  CVE-2005-1865  Candidate  Multiple SQL injection vulnerabilities in Calendarix Advanced 1.5 allow remote attackers to execute arbitrary SQL commands via the catview parameter to (1) cal_week.php, (2) cal_cat.php, or (3) cal_day.php, or (4) id parameter to cal_pophols.php.  Assigned (20050608)  None (candidate not yet proposed)    View
13072  CVE-2005-1866  Candidate  Cross-site scripting (XSS) vulnerability in calendar.php in Calendarix Advanced 1.5 allows remote attackers to inject arbitrary web script or HTML via the year parameter.  Assigned (20050608)  None (candidate not yet proposed)    View
13073  CVE-2005-1867  Candidate  Symantec Brightmail AntiSpam before 6.0.2 has a hard-coded database administrator password, which allows remote attackers to gain privileges.  Assigned (20050608)  None (candidate not yet proposed)    View
13074  CVE-2005-1868  Candidate  I-Man 0.9, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code by uploading a file attachment with a .php extension.  Assigned (20050608)  None (candidate not yet proposed)    View
13075  CVE-2005-1869  Candidate  PHP remote file inclusion vulnerability in start_lobby.php in MWChat 6.x allows remote attackers to execute arbitrary PHP code via the CONFIG[MWCHAT_Libs] parameter.  Assigned (20050608)  None (candidate not yet proposed)    View

Page 19289 of 20943, showing 5 records out of 104715 total, starting on record 96441, ending on 96445

Actions