CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12607 | CVE-2005-1401 | Candidate | Format string vulnerability in the client for Mtp-Target 1.2.2 and earlier allows remote attackers to execute arbitrary code via game messages or other text. | Assigned (20050503) | None (candidate not yet proposed) | View | |
12608 | CVE-2005-1402 | Candidate | Integer signedness error in certain older versions of the NeL library, as used in Mtp-Target 1.2.2 and earlier, and possibly other products, allows remote attackers to cause a denial of service (memory consumption or server crash) via a negative value in a STLport call, which is not caught by a signed comparison. | Assigned (20050503) | None (candidate not yet proposed) | View | |
12609 | CVE-2005-1403 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in JustWilliam"s Amazon Webstore 04050100 allow remote attackers to inject arbitrary web script or HTML via the (1) image parameter to closeup.php, the (2) currentIsExpanded or (3) searchFor parameters to index.php, (4) the currentNumber parameter to software_CAD_Technical_60002_uk.htm, or (5) a cookie. | Assigned (20050503) | None (candidate not yet proposed) | View | |
12610 | CVE-2005-1404 | Candidate | MyPHP Forum 1.0 allows remote attackers to spoof the username by modifying the (1) nbuser parameter to post.php or (2) sender parameter to privmsg.php. | Assigned (20050503) | None (candidate not yet proposed) | View | |
12611 | CVE-2005-1405 | Candidate | HTTP response splitting vulnerability in the @SetHTTPHeader function in Lotus Domino 6.5.x before 6.5.4 and 6.0.x before 6.0.5 allows attackers to poison the web cache via malicious applications. | Assigned (20050503) | None (candidate not yet proposed) | View |
Page 19475 of 20943, showing 5 records out of 104715 total, starting on record 97371, ending on 97375