CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12632  CVE-2005-1426  Candidate  Uapplication Ublog Reload stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for mdb-database/blog.mdb (aka mdb-database/blog.msb).  Assigned (20050503)  None (candidate not yet proposed)    View
12633  CVE-2005-1427  Candidate  Uapplication Uphotogallery stores the database under the web document root, which allows remote attackers to obtain sensitive information via a direct request to uphotogallery.mdb.  Assigned (20050503)  None (candidate not yet proposed)    View
12634  CVE-2005-1428  Candidate  edit_image.asp in Uapplication Uphotogallery allows remote attackers to upload arbitrary files.  Assigned (20050503)  None (candidate not yet proposed)    View
12635  CVE-2005-1429  Candidate  SQL injection vulnerability in login.asp in WWWguestbook 1.1 allows remote attackers to execute arbitrary SQL commands via the password parameter.  Assigned (20050503)  None (candidate not yet proposed)    View
12636  CVE-2005-1430  Candidate  Mac OS X 10.3.x and earlier uses insecure permissions for a pseudo terminal tty (pty) that is managed by a non-setuid program, which allows local users to read or modify sessions of other users.  Assigned (20050503)  None (candidate not yet proposed)    View

Page 19480 of 20943, showing 5 records out of 104715 total, starting on record 97396, ending on 97400

Actions