CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12298 | CVE-2005-1092 | Candidate | Lightspeed DeluxeFTP 6.01 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local users to gain privileges. | Assigned (20050413) | None (candidate not yet proposed) | View | |
12299 | CVE-2005-1093 | Candidate | Buffer overflow in the PopUp Plus 2.0.3.8 plugin for Miranda IM, with "Use SmileyAdd Setting" enabled, allows remote attackers to execute arbitrary code. | Assigned (20050413) | None (candidate not yet proposed) | View | |
12300 | CVE-2005-1094 | Candidate | FTP Now 2.6.14 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local users to gain privileges. | Assigned (20050413) | None (candidate not yet proposed) | View | |
12301 | CVE-2005-1095 | Candidate | Cross-site scripting (XSS) vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to inject arbitrary web script or HTML via the page parameter. | Assigned (20050413) | None (candidate not yet proposed) | View | |
12302 | CVE-2005-1096 | Candidate | SQL injection vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to execute arbitrary SQL commands via the UserID parameter. | Assigned (20050413) | None (candidate not yet proposed) | View |
Page 19560 of 20943, showing 5 records out of 104715 total, starting on record 97796, ending on 97800