CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12433  CVE-2005-1227  Candidate  Cross-site scripting (XSS) vulnerability in PHProjekt 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the chatroom text submission form.  Assigned (20050422)  None (candidate not yet proposed)    View
12434  CVE-2005-1228  Candidate  Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file.  Assigned (20050422)  None (candidate not yet proposed)    View
12435  CVE-2005-1229  Candidate  Directory traversal vulnerability in cpio 2.6 and earlier allows remote attackers to write to arbitrary directories via a .. (dot dot) in a cpio file.  Assigned (20050422)  None (candidate not yet proposed)    View
12436  CVE-2005-1230  Candidate  Directory traversal vulnerability in Yawcam 0.2.5 allows remote attackers to read arbitrary files via ".." (dot dot backslash) sequences in a GET request.  Assigned (20050422)  None (candidate not yet proposed)    View
6041  CVE-2002-1657  Candidate  PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack.  Assigned (20050422)  None (candidate not yet proposed)    View

Page 19524 of 20943, showing 5 records out of 104715 total, starting on record 97616, ending on 97620

Actions