CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12563 | CVE-2005-1357 | Candidate | text.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. | Assigned (20050428) | None (candidate not yet proposed) | View | |
12564 | CVE-2005-1358 | Candidate | text.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument. | Assigned (20050428) | None (candidate not yet proposed) | View | |
12565 | CVE-2005-1359 | Candidate | Cross-site scripting (XSS) vulnerability in text.cgi script allows remote attackers to inject arbitrary web script or HTML via the argument. | Assigned (20050428) | None (candidate not yet proposed) | View | |
12566 | CVE-2005-1360 | Candidate | PHP remote file inclusion vulnerability in error.php in GrayCMS 1.1 allows remote attackers to execute arbitrary PHP code by modifying the path_prefix parameter to reference a URL on a remote web server that contains the code. | Assigned (20050428) | None (candidate not yet proposed) | View | |
12567 | CVE-2005-1361 | Candidate | Multiple SQL injection vulnerabilities in MetaCart e-Shop 8.0 allow remote attackers to execute arbitrary SQL commands via the (1) intProdID parameter in product.asp or (2) strCatalog_NAME parameter to productsByCategory.asp. | Assigned (20050428) | None (candidate not yet proposed) | View |
Page 19495 of 20943, showing 5 records out of 104715 total, starting on record 97471, ending on 97475