CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12298  CVE-2005-1092  Candidate  Lightspeed DeluxeFTP 6.01 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local users to gain privileges.  Assigned (20050413)  None (candidate not yet proposed)    View
12299  CVE-2005-1093  Candidate  Buffer overflow in the PopUp Plus 2.0.3.8 plugin for Miranda IM, with "Use SmileyAdd Setting" enabled, allows remote attackers to execute arbitrary code.  Assigned (20050413)  None (candidate not yet proposed)    View
12300  CVE-2005-1094  Candidate  FTP Now 2.6.14 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local users to gain privileges.  Assigned (20050413)  None (candidate not yet proposed)    View
12301  CVE-2005-1095  Candidate  Cross-site scripting (XSS) vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to inject arbitrary web script or HTML via the page parameter.  Assigned (20050413)  None (candidate not yet proposed)    View
12302  CVE-2005-1096  Candidate  SQL injection vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to execute arbitrary SQL commands via the UserID parameter.  Assigned (20050413)  None (candidate not yet proposed)    View

Page 19560 of 20943, showing 5 records out of 104715 total, starting on record 97796, ending on 97800

Actions