CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12323  CVE-2005-1117  Candidate  PHP remote file inclusion vulnerability in index.php in All4WWW-Homepagecreator 1.0a allows remote attackers to execute arbitrary PHP code by modifying the site parameter to reference a URL on a remote web server that contains the code.  Assigned (20050416)  None (candidate not yet proposed)    View
12324  CVE-2005-1118  Candidate  Cross-site scripting (XSS) vulnerability in IISWebAgentIF.dll in the RSA Authentication Agent for Web 5.2 allows remote attackers to inject arbitrary web script or HTML via the postdata parameter.  Assigned (20050416)  None (candidate not yet proposed)    View
12325  CVE-2005-1119  Candidate  Sudo VISudo 1.6.8 and earlier allows local users to corrupt arbitrary files via a symlink attack on temporary files.  Assigned (20050416)  None (candidate not yet proposed)    View
12326  CVE-2005-1120  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IlohaMail 0.8.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the e-mail (1) body, (2) filename, or (3) MIME type.  Assigned (20050416)  None (candidate not yet proposed)    View
12327  CVE-2005-1121  Candidate  Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and earlier, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow attackers to execute arbitrary code via a URL.  Assigned (20050416)  None (candidate not yet proposed)    View

Page 19551 of 20943, showing 5 records out of 104715 total, starting on record 97751, ending on 97755

Actions