CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13071 | CVE-2005-1865 | Candidate | Multiple SQL injection vulnerabilities in Calendarix Advanced 1.5 allow remote attackers to execute arbitrary SQL commands via the catview parameter to (1) cal_week.php, (2) cal_cat.php, or (3) cal_day.php, or (4) id parameter to cal_pophols.php. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13072 | CVE-2005-1866 | Candidate | Cross-site scripting (XSS) vulnerability in calendar.php in Calendarix Advanced 1.5 allows remote attackers to inject arbitrary web script or HTML via the year parameter. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13073 | CVE-2005-1867 | Candidate | Symantec Brightmail AntiSpam before 6.0.2 has a hard-coded database administrator password, which allows remote attackers to gain privileges. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13074 | CVE-2005-1868 | Candidate | I-Man 0.9, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code by uploading a file attachment with a .php extension. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13075 | CVE-2005-1869 | Candidate | PHP remote file inclusion vulnerability in start_lobby.php in MWChat 6.x allows remote attackers to execute arbitrary PHP code via the CONFIG[MWCHAT_Libs] parameter. | Assigned (20050608) | None (candidate not yet proposed) | View |
Page 19289 of 20943, showing 5 records out of 104715 total, starting on record 96441, ending on 96445