CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12711  CVE-2005-1505  Candidate  The new account wizard in Mail.app 2.0 in Mac OS 10.4, when configuring an IMAP mail account and checking the credentials, does not prompt the user to use SSL until after the password has already been sent, which causes the password to be sent in plaintext.  Assigned (20050511)  None (candidate not yet proposed)    View
12712  CVE-2005-1506  Candidate  SQL injection vulnerability in out.php in CJ Ultra (CJUltra) Plus 1.0.3 and 1.0.4 allows remote attackers to execute arbitrary SQL commands via the perm parameter.  Assigned (20050511)  None (candidate not yet proposed)    View
12713  CVE-2005-1507  Candidate  Buffer overflow in the Tomcat plugin in 4d WebSTAR 5.33 and 5.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long URL.  Assigned (20050511)  None (candidate not yet proposed)    View
12714  CVE-2005-1508  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PwsPHP 1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) month or (2) annee parameters to the news module, (3) nbractif or (4) annee parameters to the stats module, (5) id parameter to profil.php, (6) mb_lettre or (7) lettre parameter to memberlist.php, or (8) chaine_search, or (9) auteur_search parameter to the recherche module.  Assigned (20050511)  None (candidate not yet proposed)    View
12715  CVE-2005-1509  Candidate  SQL injection vulnerability in profil.php in PwsPHP 1.2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20050511)  None (candidate not yet proposed)    View

Page 19394 of 20943, showing 5 records out of 104715 total, starting on record 96966, ending on 96970

Actions