CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12602  CVE-2005-1396  Candidate  Race condition in Ce/Ceterm (aka ARPUS/Ce) 2.5.4 and earlier allows local users to write to arbitrary files via a symlink attack on the ce_edit_log temporary file.  Assigned (20050502)  None (candidate not yet proposed)    View
12603  CVE-2005-1397  Candidate  SQL injection vulnerability in search.php for PHP-Calendar before 0.10.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors.  Assigned (20050502)  None (candidate not yet proposed)    View
12604  CVE-2005-1398  Candidate  phpcart.php in PHPCart 3.2 allows remote attackers to change product price information by modifying the (1) price or (2) postage parameters. NOTE: it was later reported that 3.4 through 4.6.4 are also affected.  Assigned (20050502)  None (candidate not yet proposed)    View
12551  CVE-2005-1345  Candidate  Squid 2.5.STABLE9 and earlier does not trigger a fatal error when it identifies missing or invalid ACLs in the http_access configuration, which could lead to less restrictive ACLs than intended by the administrator.  Assigned (20050428)  None (candidate not yet proposed)    View
12552  CVE-2005-1346  Candidate  Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a denial of service (component crash) and avoid detection via a crafted RAR file.  Assigned (20050428)  None (candidate not yet proposed)    View

Page 19492 of 20943, showing 5 records out of 104715 total, starting on record 97456, ending on 97460

Actions