CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13081  CVE-2005-1875  Candidate  Multiple SQL injection vulnerabilities in list.php in Exhibit Engine (EE) 1.22 allow remote attackers to execute arbitrary SQL commands via the (1) search_row, (2) sort_row, (3) order or (4) perpage parameter.  Assigned (20050608)  None (candidate not yet proposed)    View
13082  CVE-2005-1876  Candidate  Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with administrative privileges to execute arbitrary PHP code via certain inputs that are injected into a template (.tpl) file.  Assigned (20050608)  None (candidate not yet proposed)    View
13083  CVE-2005-1877  Candidate  Cross-site scripting (XSS) vulnerability in view_ticket.php in Lpanel 1.59 and earlier allows remote attackers to inject arbitrary web script or HTML and obtain sensitive information via the pid parameter.  Assigned (20050608)  None (candidate not yet proposed)    View
13084  CVE-2005-1878  Candidate  GIPTables Firewall 1.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the temp.ip.addresses temporary file.  Assigned (20050608)  None (candidate not yet proposed)    View
13085  CVE-2005-1879  Candidate  LutelWall 0.97 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file created by a system call to wget.  Assigned (20050608)  None (candidate not yet proposed)    View

Page 19291 of 20943, showing 5 records out of 104715 total, starting on record 96451, ending on 96455

Actions