CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12602 | CVE-2005-1396 | Candidate | Race condition in Ce/Ceterm (aka ARPUS/Ce) 2.5.4 and earlier allows local users to write to arbitrary files via a symlink attack on the ce_edit_log temporary file. | Assigned (20050502) | None (candidate not yet proposed) | View | |
12603 | CVE-2005-1397 | Candidate | SQL injection vulnerability in search.php for PHP-Calendar before 0.10.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. | Assigned (20050502) | None (candidate not yet proposed) | View | |
12604 | CVE-2005-1398 | Candidate | phpcart.php in PHPCart 3.2 allows remote attackers to change product price information by modifying the (1) price or (2) postage parameters. NOTE: it was later reported that 3.4 through 4.6.4 are also affected. | Assigned (20050502) | None (candidate not yet proposed) | View | |
12551 | CVE-2005-1345 | Candidate | Squid 2.5.STABLE9 and earlier does not trigger a fatal error when it identifies missing or invalid ACLs in the http_access configuration, which could lead to less restrictive ACLs than intended by the administrator. | Assigned (20050428) | None (candidate not yet proposed) | View | |
12552 | CVE-2005-1346 | Candidate | Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a denial of service (component crash) and avoid detection via a crafted RAR file. | Assigned (20050428) | None (candidate not yet proposed) | View |
Page 19492 of 20943, showing 5 records out of 104715 total, starting on record 97456, ending on 97460