CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12607  CVE-2005-1401  Candidate  Format string vulnerability in the client for Mtp-Target 1.2.2 and earlier allows remote attackers to execute arbitrary code via game messages or other text.  Assigned (20050503)  None (candidate not yet proposed)    View
12608  CVE-2005-1402  Candidate  Integer signedness error in certain older versions of the NeL library, as used in Mtp-Target 1.2.2 and earlier, and possibly other products, allows remote attackers to cause a denial of service (memory consumption or server crash) via a negative value in a STLport call, which is not caught by a signed comparison.  Assigned (20050503)  None (candidate not yet proposed)    View
12609  CVE-2005-1403  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in JustWilliam"s Amazon Webstore 04050100 allow remote attackers to inject arbitrary web script or HTML via the (1) image parameter to closeup.php, the (2) currentIsExpanded or (3) searchFor parameters to index.php, (4) the currentNumber parameter to software_CAD_Technical_60002_uk.htm, or (5) a cookie.  Assigned (20050503)  None (candidate not yet proposed)    View
12610  CVE-2005-1404  Candidate  MyPHP Forum 1.0 allows remote attackers to spoof the username by modifying the (1) nbuser parameter to post.php or (2) sender parameter to privmsg.php.  Assigned (20050503)  None (candidate not yet proposed)    View
12611  CVE-2005-1405  Candidate  HTTP response splitting vulnerability in the @SetHTTPHeader function in Lotus Domino 6.5.x before 6.5.4 and 6.0.x before 6.0.5 allows attackers to poison the web cache via malicious applications.  Assigned (20050503)  None (candidate not yet proposed)    View

Page 19475 of 20943, showing 5 records out of 104715 total, starting on record 97371, ending on 97375

Actions