CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12433 | CVE-2005-1227 | Candidate | Cross-site scripting (XSS) vulnerability in PHProjekt 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the chatroom text submission form. | Assigned (20050422) | None (candidate not yet proposed) | View | |
12434 | CVE-2005-1228 | Candidate | Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file. | Assigned (20050422) | None (candidate not yet proposed) | View | |
12435 | CVE-2005-1229 | Candidate | Directory traversal vulnerability in cpio 2.6 and earlier allows remote attackers to write to arbitrary directories via a .. (dot dot) in a cpio file. | Assigned (20050422) | None (candidate not yet proposed) | View | |
12436 | CVE-2005-1230 | Candidate | Directory traversal vulnerability in Yawcam 0.2.5 allows remote attackers to read arbitrary files via ".." (dot dot backslash) sequences in a GET request. | Assigned (20050422) | None (candidate not yet proposed) | View | |
6041 | CVE-2002-1657 | Candidate | PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack. | Assigned (20050422) | None (candidate not yet proposed) | View |
Page 19524 of 20943, showing 5 records out of 104715 total, starting on record 97616, ending on 97620