CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12343  CVE-2005-1137  Candidate  Simple PHP Blog (sphpBlog) 0.4.0 allows remote attackers to obtain sensitive information via a direct request to sb_functions.php, which leaks the full pathname in a PHP error message.  Assigned (20050416)  None (candidate not yet proposed)    View
12344  CVE-2005-1138  Candidate  Unknown vulnerability in WebMail in Kerio MailServer before 6.0.9 allows remote attackers to cause a denial of service (CPU consumption) via certain e-mail messages.  Assigned (20050416)  None (candidate not yet proposed)    View
12345  CVE-2005-1139  Candidate  Opera 8 Beta 3, when using first-generation vetted digital certificates, displays the Organizational information of an SSL certificate, which is easily spoofed and can facilitate phishing attacks.  Assigned (20050416)  None (candidate not yet proposed)    View
12346  CVE-2005-1140  Candidate  Cross-site scripting (XSS) vulnerability in myBloggie 2.1.1 allows remote attackers to inject arbitrary web script or HTML via the comments.  Assigned (20050416)  None (candidate not yet proposed)    View
12347  CVE-2005-1141  Candidate  Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when using the netpbm library, allows remote attackers to execute arbitrary code via a PNM file with large width and height values, which leads to a heap-based buffer overflow.  Assigned (20050416)  None (candidate not yet proposed)    View

Page 19555 of 20943, showing 5 records out of 104715 total, starting on record 97771, ending on 97775

Actions