CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13081 | CVE-2005-1875 | Candidate | Multiple SQL injection vulnerabilities in list.php in Exhibit Engine (EE) 1.22 allow remote attackers to execute arbitrary SQL commands via the (1) search_row, (2) sort_row, (3) order or (4) perpage parameter. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13082 | CVE-2005-1876 | Candidate | Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with administrative privileges to execute arbitrary PHP code via certain inputs that are injected into a template (.tpl) file. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13083 | CVE-2005-1877 | Candidate | Cross-site scripting (XSS) vulnerability in view_ticket.php in Lpanel 1.59 and earlier allows remote attackers to inject arbitrary web script or HTML and obtain sensitive information via the pid parameter. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13084 | CVE-2005-1878 | Candidate | GIPTables Firewall 1.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the temp.ip.addresses temporary file. | Assigned (20050608) | None (candidate not yet proposed) | View | |
13085 | CVE-2005-1879 | Candidate | LutelWall 0.97 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file created by a system call to wget. | Assigned (20050608) | None (candidate not yet proposed) | View |
Page 19291 of 20943, showing 5 records out of 104715 total, starting on record 96451, ending on 96455